Splunk Search

Splunk Search
Community Activity
data_explorer88
I have a list of files name under one field called "attachment"  and I would like to split this string into multiple ...
by data_explorer88 Explorer in Splunk Search 10-08-2021
0 2
0
2
yk010123
I am trying to produce the following output :app_namerequest_idtimeworkload at the time(requests per second)App112310...
by yk010123 Path Finder in Splunk Search 10-08-2021
0 4
0
4
graziaedu
Hello,I have a field with this values/v1/accounts/96ea01b5-7ea7-4dc6-b534-39ae8b114bba/transactions/v1/accounts/ff572...
by graziaedu Explorer in Splunk Search 10-08-2021
0 4
0
4
Gunnar
Hi all,strange thing - when using mean() and avg() in the same stats command, whichever is written first is empty, wh...
by Gunnar Explorer in Splunk Search 10-08-2021
0 6
0
6
mlg
Hi,I am new to Splunk and working with parking records. I am calculating the current wait_time based off upcoming par...
by mlg Observer in Splunk Search 10-08-2021
0 1
0
1
dtccsundar
Hi,my regex was like below ,search| rex field=_raw "Status=(?<Status>\"\w+\s+\w+\".*?)," |stats count by StatusMy out...
by dtccsundar Path Finder in Splunk Search 10-08-2021
0 2
0
2
mlg
Hi, I am new to Splunk and working with parking records. Within my events, I have a permit_expiry field, which is a d...
by mlg Observer in Splunk Search 10-08-2021
0 1
0
1
yvassilyeva
Hi!I have the following data and would like to check, for those records with the same ID, if one record has CREATED_D...
by yvassilyeva Path Finder in Splunk Search 10-08-2021
0 1
0
1
mlg
Hi, I am new to Splunk and working with parking records. I am trying to display parking spaces that are currently not...
by mlg Observer in Splunk Search 10-08-2021
0 1
0
1
srinivas_gowda
Hello all,I am extracting a field which is coming in multiple formats, however I found that once of the format is not...
by srinivas_gowda Path Finder in Splunk Search 10-08-2021
0 1
0
1
Bleepie
Dear Splunk Community,I have the following search: index=websphere 200 OK POST  And I have different platforms that I...
by Bleepie Communicator in Splunk Search 10-08-2021
0 2
0
2
bburns2122
I'm trying to figure out how to get the time difference between two events that use the same UUID. However, the secon...
by bburns2122 Explorer in Splunk Search 10-07-2021
0 1
0
1
Justin49
Hello All,I have a large dataset "audit.cost_records" wherein I am trying to locate a correlation based on a large nu...
by Justin49 Loves-to-Learn in Splunk Search 10-07-2021
0 3
0
3
iiix94
Hello! I have a lookup table with fields 'name' and 'last_login'. I'm trying to find users who haven't logged in the ...
by iiix94 Loves-to-Learn in Splunk Search 10-07-2021
0 4
0
4
sjringo
Trying to figure out how to loop in Splunk.  I have the below query and my end result is to map/chart into a timechar...
by sjringo Contributor in Splunk Search 10-07-2021
0 10
0
10
MikeB
Hello again Spelunkers! So I have data that looks like this:assessment=normal [1.0]assessment=normal [1.1]assessment=...
by MikeB Path Finder in Splunk Search 10-07-2021
0 2
0
2
kumarnis45
Hi Guys,       I have a scenario where i need to extract the file name from the event logs. The Event log first line ...
by kumarnis45 Path Finder in Splunk Search 10-07-2021
0 16
0
16
dmitrymi
I have items visit log index with fields: category, item each event is a visitIn addition, I have an index with all i...
by dmitrymi Observer in Splunk Search 10-07-2021
0 5
0
5
ModupeSebapole
events are loaded with different currency from different countries and we are trying to have a view converting the cu...
by ModupeSebapole Engager in Splunk Search 10-07-2021
0 3
0
3
avoelk
Hello, I'm trying to add the appearance of a certain value in my base search count. the value is "detatched". it is w...
by avoelk Communicator in Splunk Search 10-07-2021
0 3
0
3
saravana22
https://answers.splunk.com/answers/562629/how-to-configure-pie-chart-to-display-count-within.htmlsame as above post, ...
by saravana22 Explorer in Splunk Search 10-07-2021
0 2
0
2
sndpgiri
I have the following address, and I want to extract the substring.Address: 121, riverstreet, sydney, Australia.I want...
by sndpgiri Engager in Splunk Search 10-07-2021
0 1
0
1
Tanmaya
Hi , I am trying to get the day wise error count by data message only if the yesterdays error count is more than 50 ....
by Tanmaya New Member in Splunk Search 10-07-2021
0 4
0
4
srujan594
Hi Can anyone please help with this extracting stats count by two fields. I've below data in each transactiontype    ...
by srujan594 Loves-to-Learn in Splunk Search 10-06-2021
0 1
0
1
vadlamudi
Hello, Can i please know how to parse the value to the 2nd query from the output of 1st query. Any help would be appr...
by vadlamudi Explorer in Splunk Search 10-06-2021
0 1
0
1
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

How Edge Processor's Durable Queue Works

Edge Processor sits in one of the most consequential places in any Splunk pipeline: between your data sources ...

Quantify Your Splunk Investment Impact: Introducing Savings Metrics to Value Insights

Building on the foundation established in our initial Value Insights releases, we are introducing the Savings ...
Top Solution Authors