Splunk Search

Splunk Search
Community Activity
mlg
Hi,I am new to Splunk and working with parking records. I am calculating the current wait_time based off upcoming par...
by mlg Observer in Splunk Search 10-08-2021
0 1
0
1
dtccsundar
Hi,my regex was like below ,search| rex field=_raw "Status=(?<Status>\"\w+\s+\w+\".*?)," |stats count by StatusMy out...
by dtccsundar Path Finder in Splunk Search 10-08-2021
0 2
0
2
mlg
Hi, I am new to Splunk and working with parking records. Within my events, I have a permit_expiry field, which is a d...
by mlg Observer in Splunk Search 10-08-2021
0 1
0
1
yvassilyeva
Hi!I have the following data and would like to check, for those records with the same ID, if one record has CREATED_D...
by yvassilyeva Path Finder in Splunk Search 10-08-2021
0 1
0
1
mlg
Hi, I am new to Splunk and working with parking records. I am trying to display parking spaces that are currently not...
by mlg Observer in Splunk Search 10-08-2021
0 1
0
1
srinivas_gowda
Hello all,I am extracting a field which is coming in multiple formats, however I found that once of the format is not...
by srinivas_gowda Path Finder in Splunk Search 10-08-2021
0 1
0
1
Bleepie
Dear Splunk Community,I have the following search: index=websphere 200 OK POST  And I have different platforms that I...
by Bleepie Communicator in Splunk Search 10-08-2021
0 2
0
2
bburns2122
I'm trying to figure out how to get the time difference between two events that use the same UUID. However, the secon...
by bburns2122 Explorer in Splunk Search 10-07-2021
0 1
0
1
Justin49
Hello All,I have a large dataset "audit.cost_records" wherein I am trying to locate a correlation based on a large nu...
by Justin49 Loves-to-Learn in Splunk Search 10-07-2021
0 3
0
3
iiix94
Hello! I have a lookup table with fields 'name' and 'last_login'. I'm trying to find users who haven't logged in the ...
by iiix94 Loves-to-Learn in Splunk Search 10-07-2021
0 4
0
4
sjringo
Trying to figure out how to loop in Splunk.  I have the below query and my end result is to map/chart into a timechar...
by sjringo Contributor in Splunk Search 10-07-2021
0 10
0
10
MikeB
Hello again Spelunkers! So I have data that looks like this:assessment=normal [1.0]assessment=normal [1.1]assessment=...
by MikeB Path Finder in Splunk Search 10-07-2021
0 2
0
2
kumarnis45
Hi Guys,       I have a scenario where i need to extract the file name from the event logs. The Event log first line ...
by kumarnis45 Path Finder in Splunk Search 10-07-2021
0 16
0
16
dmitrymi
I have items visit log index with fields: category, item each event is a visitIn addition, I have an index with all i...
by dmitrymi Observer in Splunk Search 10-07-2021
0 5
0
5
ModupeSebapole
events are loaded with different currency from different countries and we are trying to have a view converting the cu...
by ModupeSebapole Engager in Splunk Search 10-07-2021
0 3
0
3
avoelk
Hello, I'm trying to add the appearance of a certain value in my base search count. the value is "detatched". it is w...
by avoelk Communicator in Splunk Search 10-07-2021
0 3
0
3
saravana22
https://answers.splunk.com/answers/562629/how-to-configure-pie-chart-to-display-count-within.htmlsame as above post, ...
by saravana22 Explorer in Splunk Search 10-07-2021
0 2
0
2
sndpgiri
I have the following address, and I want to extract the substring.Address: 121, riverstreet, sydney, Australia.I want...
by sndpgiri Engager in Splunk Search 10-07-2021
0 1
0
1
Tanmaya
Hi , I am trying to get the day wise error count by data message only if the yesterdays error count is more than 50 ....
by Tanmaya New Member in Splunk Search 10-07-2021
0 4
0
4
srujan594
Hi Can anyone please help with this extracting stats count by two fields. I've below data in each transactiontype    ...
by srujan594 Loves-to-Learn in Splunk Search 10-06-2021
0 1
0
1
vadlamudi
Hello, Can i please know how to parse the value to the 2nd query from the output of 1st query. Any help would be appr...
by vadlamudi Explorer in Splunk Search 10-06-2021
0 1
0
1
ymalm188
i have this spl | tstats `summariesonly` earliest(_time) as _time from datamodel=Incident_Management.Notable_Events_M...
by ymalm188 Explorer in Splunk Search 10-06-2021
0 9
0
9
smaran06
Hi Team,I want to extract aws-region from host name. host= "my-service-name-.ip-101-99-126-252-us-west-2c". I want to...
by smaran06 Path Finder in Splunk Search 10-06-2021
0 1
0
1
Qingguo
Hi AllI have a question and need to do the following:Search contidtion_1 from (index_1 ) and then get the value of fi...
by Qingguo Engager in Splunk Search 10-06-2021
0 9
0
9
kumarnis45
Hi,   I have two different queries running on same dashboard but a different panel.  Below is the query one which res...
by kumarnis45 Path Finder in Splunk Search 10-06-2021
0 14
0
14
Get Updates on the Splunk Community!

Meet Splunk Observability Studio: AI-Assisted OpenTelemetry Instrumentation Without ...

Instrumentation is usually the last step or even an afterthought when building out a project. The feature ...

Federated Search for Cisco Security and Analytics Logging (SAL) is now GA on Splunk ...

Federated Search for Cisco  Security Analytics and Logging (SAL) is now generally available as part of the ...

Your Path to AgenticOps: AI Experiences for Every Splunk Practitioner

Your Path to AgenticOps: AI Experiences for Every Splunk Practitioner   Join us for a demo-driven look at how ...