Splunk Search

Splunk Search
Community Activity
ashishmgupta
I have below two JSON events where under "appliedConditionalAccessPolicies", in one event policy1 has results =failur...
by ashishmgupta Explorer in Splunk Search 11-11-2021
0 0
0
0
lostcauz3
how to include specific rows from a table in a panel into another panel in the same dashboard?
by lostcauz3 Path Finder in Splunk Search 11-11-2021
0 4
0
4
richtate
I have an index with a mv field (parts) that I want to match a value in that field with a csv file, but only return t...
by richtate Path Finder in Splunk Search 11-11-2021
0 12
0
12
sasankganta
Team Can you please provide me documentation link to learn Splunk UBA platform and related links for monitoring, deve...
by sasankganta Path Finder in Splunk Search 11-11-2021
0 1
0
1
rjashton
I'm having trouble with using the where command to compare times. The search that I'm running is this:   index=jamf s...
by rjashton Engager in Splunk Search 11-11-2021
0 2
0
2
Roy_9
Hello,I am seeing the below warning on our SH after splunk cloud performed a restart at the backend when i uninstalle...
by Roy_9 Motivator in Splunk Search 11-11-2021
0 8
0
8
rajs115
Hi,   I am looking for a solution to check the splunk query results . if it returns '0' events i need to trigger an a...
by rajs115 Path Finder in Splunk Search 11-11-2021
0 6
0
6
srinivas_gowda
Hello all, I am trying to extract the below highlighted fields, but the extractions at time is failing to get the req...
by srinivas_gowda Path Finder in Splunk Search 11-11-2021
0 3
0
3
Azwaliyana
I want to extract the field that are on the left which are status, monitoirng status, monitoring mode and so on. Mult...
by Azwaliyana Path Finder in Splunk Search 11-11-2021
0 3
0
3
rafadvega
Hi,I need to join two searchs. For example:Example 1: | inputlookup join_example1.csv countryproductdaystockSpainappl...
by rafadvega Path Finder in Splunk Search 11-10-2021
0 2
0
2
marceloalejandr
For some reason the "Enabled" field is not return "true or false" when running ldapsearch from Splunk.  All the other...
by marceloalejandr Path Finder in Splunk Search 11-10-2021
0 1
0
1
esalesap
We have Splunk 8.0.3 deployed to a private AWS cloud.We use AWS i3.8xlarge instance types for our indexers, recently ...
by esalesap Path Finder in Splunk Search 11-10-2021
0 1
0
1
andrewenstad
I have a user that has asked how to get access/permissions to the "export" button while doing a search in Splunk.  It...
by andrewenstad Engager in Splunk Search 11-10-2021
0 1
0
1
SMM10
I want to find items in one index based on results from another index's search. I have the following but only get a h...
by SMM10 Explorer in Splunk Search 11-10-2021
0 3
0
3
jeck11
This has been asked a million times. I've been digging through the various postings but haven't figured out what I'm ...
by jeck11 Path Finder in Splunk Search 11-10-2021
0 8
0
8
gillockb
Hello Splunksters,I'm new to Splunk and am constructing my first subsearch.  I've read the documentation on subsearch...
by gillockb Explorer in Splunk Search 11-10-2021
0 4
0
4
Vip_Mark
I am currently using an Input token called OS.I have three values for the token:     MAC      Windows     Linux.In my...
by Vip_Mark Explorer in Splunk Search 11-10-2021
0 1
0
1
rkishoreqa
Hi team,  Please help with the regex to fetch the values from below payload -  serverName, HostNumber. "{\n \"process...
by rkishoreqa Communicator in Splunk Search 11-10-2021
0 1
0
1
zubairaizatron
Hi GuysWanted to know if anyone knows if you can populate a summary index from a data model. the summary index query ...
by zubairaizatron Explorer in Splunk Search 11-10-2021
0 2
0
2
jip31
hiI use a lookup in order to do a correspondance between the field web_error_code which is my sourcetype and which is...
by jip31 Motivator in Splunk Search 11-10-2021
0 2
0
2
rohanmiskin
I have extracted two fields in my non prod splunk account. I want to use the same for the prod splunk account as well...
by rohanmiskin Explorer in Splunk Search 11-10-2021
0 2
0
2
Wilfred
Hi,I just started working with Splunk and would ask for some help.I have 3 sources, A, B and C.Source A contains fiel...
by Wilfred Engager in Splunk Search 11-10-2021
0 2
0
2
rel82wi
Hi thereIm trying to filter my search results based on numerical top values of a field.For example. I have 5k events ...
by rel82wi Engager in Splunk Search 11-10-2021
0 4
0
4
spfingst87
HiI want to exclude the path from search results, i.e.:www.testsite.comwww.testsite.com/path1www.testsite.com/path2ww...
by spfingst87 Loves-to-Learn in Splunk Search 11-10-2021
0 4
0
4
febbi
I want to extract the substring: "xenmobile" from string:  "update task to xenmobile-2021-11-08-19-created completed!...
by febbi Explorer in Splunk Search 11-10-2021
0 2
0
2
Get Updates on the Splunk Community!

Self-Healing Pipeline Is Now Generally Available: AI-Powered CIM Compliance

Maintaining data integrity across security and analytics pipelines is an ongoing challenge. Data ...

Meet Splunk Observability Studio: AI-Assisted OpenTelemetry Instrumentation Without ...

Instrumentation is usually the last step or even an afterthought when building out a project. The feature ...

Federated Search for Cisco Security and Analytics Logging (SAL) is now GA on Splunk ...

Federated Search for Cisco  Security Analytics and Logging (SAL) is now generally available as part of the ...