Splunk Search

Splunk Search
Community Activity
scout29
Need help to extract a field that comes after a certain word in a event. I am looking to extract a field called "sn_g...
by scout29 Path Finder in Splunk Search 11-22-2024
0 3
0
3
Brad
We are trying to watch the NIC statistics for our OS interfaces.  We are gathering data from a simple ifconfig eth0 |...
by Brad Explorer in Splunk Search 11-22-2024
0 6
0
6
vm_molson
I am trying to figure out how to include a lookup in my search, but only some records. My current search is below. My...
by vm_molson Explorer in Splunk Search 11-21-2024
0 1
0
1
robertlynch2020
Hi I have the below code to produce this table - but does anyone know how to get rid of the part in red (I have added...
by robertlynch2020 Influencer in Splunk Search 11-21-2024
0 5
0
5
LogUx
Hello Splunkers!!We have events that contains source and destination fields with complete values, and we want to matc...
by LogUx Motivator in Splunk Search 11-21-2024
0 3
0
3
ecnausysadm
I have searches for two files that are related but the incoming and outgoing file names differ, basically it's an inc...
by ecnausysadm Explorer in Splunk Search 11-21-2024
0 3
0
3
gajananh999
Hello Everyone, I have events like 02-Jul-2014 09:25:25 AM: ========== Finish Transmit Process ========== 02-Ju...
by gajananh999 Contributor in Splunk Search 11-21-2024
0 3
0
3
tlunruh
When I run this query: index=edi-2 | join type=inner TRACKINGNUMBER [search index=edi | rename TRCK AS TRACKINGNUMBER...
by tlunruh New Member in Splunk Search 11-21-2024
0 3
0
3
dmrhodes101
We're using Splunk to monitor EDI traffic onto our backend system. We want to have a single value panel that shows gr...
by dmrhodes101 Explorer in Splunk Search 11-21-2024
1 3
1
3
mbasharat
Hi, I have a simple search which is using a lookup definition based off of a lookup. This lookup is large. Search has...
by mbasharat Builder in Splunk Search 11-20-2024
0 3
0
3
mrsampson
The structure of JSON in my log events is roughly as follows  { "Info": { "Apps": { "Reportin...
by mrsampson Explorer in Splunk Search 11-19-2024
0 2
0
2
NanSplk01
This is my search.  I brings back Not Known for every field instead of the correct case name:index=websphere webspher...
by NanSplk01 Communicator in Splunk Search 11-19-2024
0 3
0
3
majilan1
Hi Splunkers, any help with Rex has exceeded configured match_limit, consider raising the value in limits.conf.My sea...
by majilan1 Path Finder in Splunk Search 11-18-2024
1 4
1
4
ameyad
I am trying to create a dashboard. It has two input text fields.I want to run a search query based on these two input...
by ameyad Engager in Splunk Search 11-18-2024
1 1
1
1
msalghamdi
hello Splunkersi have a requirement where i need to show values in statistics even if it doesn't exist, for example h...
by msalghamdi Path Finder in Splunk Search 11-18-2024
0 3
0
3
linaaabad
I am confused on why I only get _ID's from my Salesforce ingest, for example, I am not getting Username, Profile Name...
by linaaabad Observer in Splunk Search 11-18-2024
0 2
0
2
darkins
like in the subject, i am looking at events with different fields and delimetersi want to say if the event contains t...
by darkins Engager in Splunk Search 11-15-2024
0 8
0
8
smahoney
Not sure what I am doing wrong.  I have a datamodel with a dataset that I can pivot on a field when using the datamod...
by smahoney Path Finder in Splunk Search 11-15-2024
0 2
0
2
mninansplunk
Hello everyone,I'm having an issue that I'm trying to understand and fix.  I have a Dashboard table that displays the...
by mninansplunk Path Finder in Splunk Search 11-15-2024
0 3
0
3
mg99
we have a user ID that we are looking to find out what splunk has collected.  what is the serach that i use?
by mg99 New Member in Splunk Search 11-15-2024
0 1
0
1
drogo
Team,I am bit new to Splunk, need help to pull ERR message from below sample raw data. {"hosting_environment": "nonp"...
by drogo Explorer in Splunk Search 11-14-2024
0 3
0
3
scottmkirkland
I am on Splunk 8.2.12.I am trying to get a distinct count of incidents that have happened in each month, year to date...
by scottmkirkland Explorer in Splunk Search 11-14-2024
0 3
0
3
splunklearner
My team has created production environment with 6 syslog servers (2 in each of 3 multi site cluster). My question is ...
by splunklearner Communicator in Splunk Search 11-14-2024
0 3
0
3
Athira
in the outer query i am trying to pull  the ORDERS which is Not available .I need to match the ORDERS  which is Not a...
by Athira Loves-to-Learn Everything in Splunk Search 11-14-2024
0 5
0
5
jerinvarghese
Hi Team, I have a splunk query that am testing for Service Now data extract. index=snow "INC783" | search dv_state="I...
by jerinvarghese Communicator in Splunk Search 11-14-2024
0 1
0
1
Get Updates on the Splunk Community!

Meet Splunk Observability Studio: AI-Assisted OpenTelemetry Instrumentation Without ...

Instrumentation is usually the last step or even an afterthought when building out a project. The feature ...

Federated Search for Cisco Security and Analytics Logging (SAL) is now GA on Splunk ...

Federated Search for Cisco  Security Analytics and Logging (SAL) is now generally available as part of the ...

Your Path to AgenticOps: AI Experiences for Every Splunk Practitioner

Your Path to AgenticOps: AI Experiences for Every Splunk Practitioner   Join us for a demo-driven look at how ...