Splunk Search

Splunk Search
Community Activity
innoce
Newbie here...!I have a list of IP's in a CSV from which I need to exclude few IP's (IP1, IP2, IP3, etc.,) from the r...
by innoce Path Finder in Splunk Search 10-01-2021
0 1
0
1
mkulicke
Hi, I'm having trouble with a regex field extraction. I'm looking to extract the numeric ID after the "x-client-id" k...
by mkulicke Explorer in Splunk Search 10-01-2021
0 2
0
2
ddaly
I am trying to speed up a search on Splunk. The search looks through millions of logs for matches to around 100 event...
by ddaly Engager in Splunk Search 10-01-2021
0 2
0
2
cdstealer
Hi, Hopefully a quick one  I have a user that can upload lookup table files, but when a lookup definition is creat...
by cdstealer Contributor in Splunk Search 10-01-2021
0 8
0
8
alwinaugustin
I have error messages in the following formats  { "level":"error", "message":"Log: \"error in action {\\\"status\\\":...
by alwinaugustin Engager in Splunk Search 10-01-2021
0 1
0
1
dmacl
Hi,I'm trying to filter the results from one search based on the results from another search.Example:Consider the fol...
by dmacl Explorer in Splunk Search 10-01-2021
0 6
0
6
sndpgiri
I have a column that has events recorded in an interval of 1 hour.Example:Date                                       ...
by sndpgiri Engager in Splunk Search 10-01-2021
0 3
0
3
mcaulsc
Hi,I have some data which spans multiple systems example below:"system" "app" "fld1" "fld2" "fld3"sys1         appA  ...
by mcaulsc Path Finder in Splunk Search 10-01-2021
0 7
0
7
datatan
Here's an example of some error logs that simply show which app reported an error and which country:_time(s)sourcetyp...
by datatan Engager in Splunk Search 09-30-2021
0 1
0
1
mvishal
Hi All.. I need help with table pagination by default splunk provides pagination option as << prev & next >> instead...
by mvishal Explorer in Splunk Search 09-30-2021
1 2
1
2
alwinaugustin
I have the following query and I am using it in a dashboard to show the errors categorized. index=myindex sourcetype=...
by alwinaugustin Engager in Splunk Search 09-30-2021
0 3
0
3
erog
Hello,I need to find a way to use another field for _Time on a single query (I don't want to change props just for 1 ...
by erog Engager in Splunk Search 09-30-2021
0 1
0
1
babcolee
I need help breaking the following data into segments. The data is currently lumped together. I have been working wit...
by babcolee Path Finder in Splunk Search 09-30-2021
0 2
0
2
gkanapathy
When a field value is passed to a lookup, what are the limits on how it can match the value in the lookup? Specifical...
by gkanapathy Splunk Employee Splunk Employee in Splunk Search 09-30-2021
10 5
10
5
corehan
Hello dears,How can i sort these field values ?Field = "port"0/1/0/2/0/8/0/7/0/2/0/3/0/5/0/2/0/6/0/3/0/16/0/20/18/0/6...
by corehan Explorer in Splunk Search 09-30-2021
0 16
0
16
Abe_T
I am sure I am sure I am missing something easy but, for some reason, when I compare these two values (they are in st...
by Abe_T Explorer in Splunk Search 09-30-2021
0 6
0
6
tkerr1357
Hi All,I am looking to create an alert based on the following base search. index=wineventlog w19tax.exe app_name=W19T...
by tkerr1357 Path Finder in Splunk Search 09-30-2021
0 2
0
2
pacifikn
Hello dear All, 1* How to calculate average size of a syslog message for a particular source in GB using Splunk query...
by pacifikn Communicator in Splunk Search 09-30-2021
0 2
0
2
yko84109
I have lookup with CIDR advanced field which contains: id cidr_field 1 1.1.1.1/24 2 8.8.8.8/24  If I se...
by yko84109 Loves-to-Learn in Splunk Search 09-30-2021
0 3
0
3
Abhineet
we have two device AUSTDPVPN1 and AUSTDPVPN2 and current user logged in count on device as 0 and 2867.I want whenever...
by Abhineet Loves-to-Learn Everything in Splunk Search 09-30-2021
0 9
0
9
TheColorBlack
Hey guys, I need some quick help creating a nested stats table and grouping by multiple values within that table. My ...
by TheColorBlack Path Finder in Splunk Search 09-30-2021
0 1
0
1
PickleRick
I was wondering... how are foreach-generated searches treated regarding the searches limits?I mean - normally you hav...
by SplunkTrust SplunkTrust in Splunk Search 09-30-2021
0 2
0
2
rodrigomarfei
Hello,I need a help with a search that seems very easy, but I'm unable to achieve the results I want.The events are r...
by rodrigomarfei Explorer in Splunk Search 09-30-2021
0 3
0
3
dababi1234
I am new to Splunk and would appreciate if anyone helps me on this. I would like to set up a Splunk alert for SocketT...
by dababi1234 New Member in Splunk Search 09-30-2021
0 5
0
5
gabrieleguidoni
Hello I would like to pass a value from a joined search (e.g. in this case the "Side") to the final table.I tried dif...
by gabrieleguidoni Loves-to-Learn in Splunk Search 09-30-2021
0 1
0
1
Get Updates on the Splunk Community!

Event Series: Splunk Observability Metrics Cost Optimization

Balancing Scale and Spend: Gaining Control Over High-Volume Metrics in Splunk Observability Cloud As ...

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...
Top Solution Authors