Splunk Search

Splunk Search
Community Activity
damucka
Hello,I am trying to extract the system IDs from single event into the multiple events, I mean that each SID is in a ...
by damucka Builder in Splunk Search 10-18-2021
0 3
0
3
tmtcollins
Hi, I'd really appreciate some advice on this.I have a data set looking at users and the apps they have access to. Th...
by tmtcollins Explorer in Splunk Search 10-18-2021
0 0
0
0
robertlynch2020
Hi - I have a production outage and I am really struggling to fix it - I have had my Unix admin on and Splunk support...
by robertlynch2020 Influencer in Splunk Search 10-18-2021
0 1
0
1
Bleepie
Dear Splunk Community,I have the following statistics table and corresponding column chart that show the amount of er...
by Bleepie Communicator in Splunk Search 10-18-2021
0 16
0
16
g_paternicola
 Hi everyone, I'm looking for a search, that shows me when the health status of splunkd is changing from green to yel...
by g_paternicola Path Finder in Splunk Search 10-18-2021
0 4
0
4
neerajs_81
Hello,  i need to configure a search using If else condition but the search outputs in a table format.  Can someone p...
by neerajs_81 Builder in Splunk Search 10-18-2021
0 4
0
4
Shahindoh
Hello,I'm building some dashboard statistics from telecom data.I have a data source as follows  :_timeOfferedTime Pic...
by Shahindoh Explorer in Splunk Search 10-18-2021
0 6
0
6
saravana22
Hi Experts,Am new to splunk..I need to extract the fields which is in MSGTXT which are highlighted. Only when MSGTXT ...
by saravana22 Explorer in Splunk Search 10-18-2021
0 4
0
4
dmbr
The answer to this probably stupid simple. Banging my head on this.Help and patience please. I am writing a query whi...
by dmbr Explorer in Splunk Search 10-18-2021
0 2
0
2
hrishi_deshpand
msg:  INFO | 2021-10-14 10:38 PM |  Message consumed: {"InputAmountToCredit":"22.67","CurrencyCode":"AUD","Buid":"140...
by hrishi_deshpand Explorer in Splunk Search 10-17-2021
0 1
0
1
indeed_2000
HiHow can extract these fields:field1=Versionfield2=Authorfield3=Datefield4=IssueNo Here is the log:23:53:00.512 app ...
by indeed_2000 Motivator in Splunk Search 10-17-2021
0 5
0
5
gitingua
Hello. How can two files be compared for identity ?file1.csv:usernameid_userJonh123 file2.csv usernameid_userJonh124 ...
by gitingua Communicator in Splunk Search 10-17-2021
0 7
0
7
gitingua
How to use "whois" .apps "network tools" doesn't work. "lookup whois" does not work. are there other valid applicatio...
by gitingua Communicator in Splunk Search 10-17-2021
0 0
0
0
cbr654
Hello,There is a tube Splunk video on finding new service interactive logins here:https://www.youtube.com/watch?v=bgI...
by cbr654 Path Finder in Splunk Search 10-17-2021
0 2
0
2
myleskennison
Sorry about this lame post. Our Splunk admin had to leave unexpectedly and now it's up to me to do this without any p...
by myleskennison Explorer in Splunk Search 10-16-2021
0 4
0
4
andrewtrobec
Hello, I have two separate chart calculations that I would like to combine into a single chart. The first is an avg...
by andrewtrobec Motivator in Splunk Search 10-15-2021
0 7
0
7
Brainstorms
Hey all, I got a really helpful response last time and now I'm back with another question. I have a search with the s...
by Brainstorms Explorer in Splunk Search 10-15-2021
0 3
0
3
phoellig
I've been working with the /services/search/jobs/export API recently and I noticed that setting the output mode to 'j...
by phoellig New Member in Splunk Search 10-15-2021
0 0
0
0
neerajs_81
Can someone help me to build a search query for the below use case ?  My use case is to detect if any S3 buckets have...
by neerajs_81 Builder in Splunk Search 10-15-2021
0 10
0
10
humanBeing
Hello all,I'm using a lookup table with a _time field to create a timechart which works great.  However, the lookup t...
by humanBeing Engager in Splunk Search 10-15-2021
0 1
0
1
Johnstone234
Hi, I am hoping to get some help in creating a search, which will be turned into an alert - I am working with system ...
by Johnstone234 Loves-to-Learn in Splunk Search 10-15-2021
0 8
0
8
luckyman80
Hi Experts,                   As part of an new initiative looking at SLO metrics. I have created the below query whi...
by luckyman80 Path Finder in Splunk Search 10-15-2021
0 0
0
0
indeed_2000
Hiwhat is the rex for thisfield1=this is messagehere is the log:00:09:59.990 app module: AB[0000]: Data[{"code":"OK",...
by indeed_2000 Motivator in Splunk Search 10-15-2021
0 1
0
1
indeed_2000
HiI have two field on my logfile <servername> <CLOSESESSION> need to know when CLOSESESSION is 0 each day by serverna...
by indeed_2000 Motivator in Splunk Search 10-15-2021
0 9
0
9
indeed_2000
hi what is rex for these three fields?here is the log:2021-10-14 12:51:20,412 INFO [APP] log in : A12345@#4321@califo...
by indeed_2000 Motivator in Splunk Search 10-15-2021
0 1
0
1
Get Updates on the Splunk Community!

Think Like an Architect: Introducing the Splunk Certified Cybersecurity Defense ...

In cybersecurity, defenders respond to threats. Architects design the systems that stop them.    As ...

Index This | What has goals but no motivation?

June 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...