Splunk Search

Splunk Search
Community Activity
srinivas_gowda
Hello all, Have been trying to extract the values through an inconsistent data as below. Highlighted values needs to ...
by srinivas_gowda Path Finder in Splunk Search 09-17-2021
0 3
0
3
nathanluke86
Hello,I am having an issue with IPLOCATION displaying the wrong Country using the following query. index="office365" ...
by nathanluke86 Communicator in Splunk Search 09-17-2021
0 5
0
5
surekhasplunk
Example  i have a csv where the date is like this in the date fieldBilling Start= 43774.7083333But when i format the ...
by surekhasplunk Communicator in Splunk Search 09-17-2021
0 1
0
1
vishaltaneja070
How can i extract this:"properties": {"nextLink": null,"columns": [{"name": "Cost", "type": "Number"},{"name": "Date"...
by vishaltaneja070 Motivator in Splunk Search 09-17-2021
0 9
0
9
phoenix_down
Hi all, I'm changing a field name in my index, so I'm trying to set up a field alias so both the old field name and n...
by phoenix_down Path Finder in Splunk Search 09-17-2021
0 1
0
1
mcaulsc
Hi,in anything else this would seem very simple but I seem to be flummoxed trying to do this in splunk. Probably not ...
by mcaulsc Path Finder in Splunk Search 09-17-2021
0 6
0
6
johnnydunlop
Hi,I have written the below search query based on some prometheus metrics being onboarded: index=lab_openshift_promet...
by johnnydunlop Engager in Splunk Search 09-17-2021
0 2
0
2
rodrigomarfei
Hey Guys, this is a continuation of the below topic:https://community.splunk.com/t5/Splunk-Search/Search-query-to-rem...
by rodrigomarfei Explorer in Splunk Search 09-17-2021
0 2
0
2
Lukas972
Let's suppose I have TOTO in successfully in my logs. I want to display the result for TOTO and append that no result...
by Lukas972 Engager in Splunk Search 09-17-2021
0 2
0
2
gelspas
I have a field (FIELD1) that may contain one of several strings.  These strings may appear in different locations wit...
by gelspas Explorer in Splunk Search 09-17-2021
0 4
0
4
Arkowski
Hi!I have a log that looks more or less like this: 'H 16-Sep-2021 10:57:03.084; 0:< Jrn.Directive "WindowSize" _...
by Arkowski New Member in Splunk Search 09-17-2021
0 0
0
0
UK_Chris_Doyle
I am trying to write a splunk query to show what percentage of traffic is split between my on premise and cloud. My s...
by UK_Chris_Doyle New Member in Splunk Search 09-17-2021
0 0
0
0
plapila
Has anybody encountered a strange timeshift when applying a model to data Model generation:Apply:
by plapila Explorer in Splunk Search 09-17-2021
0 0
0
0
plapila
Been experimenting with ML toolkit and having some weird issues. I can get nice predictions by teaching the data but ...
by plapila Explorer in Splunk Search 09-17-2021
0 3
0
3
samneo
Im trying to get a regex to work in splunk that works in regex101Im using the below regex\b(a_msg)\b[^"]+"([^"]*)"thi...
by samneo Path Finder in Splunk Search 09-17-2021
0 4
0
4
MesutUgurlu
Hi,I want to copy some logs in one index to another index with the same host information. I use collect command to do...
by MesutUgurlu New Member in Splunk Search 09-17-2021
0 3
0
3
SamHTexas
Also please guide me on how to optimize my Lookups for more efficiency. When does one use Lookups vs KVstores? Thank ...
by SamHTexas Builder in Splunk Search 09-17-2021
0 1
0
1
nadlurinadluri
HI Splunkers,I am using Splunk tables inbuilt color coding to highlight a cell based on certain condition. The proble...
by nadlurinadluri Communicator in Splunk Search 09-16-2021
0 0
0
0
dmtman
Hello - I am new to splunk and am trying to do a search on data that calls out three different fields for duplicates ...
by dmtman New Member in Splunk Search 09-16-2021
0 2
0
2
ezmo1982
Hi,I am looking to compare a field value against the results of an ldapsearch to check whether the value is present o...
by ezmo1982 Path Finder in Splunk Search 09-16-2021
0 3
0
3
vivekmisra
I have this result response[sample]: "{\"meta\":{\"code\":400}},[Content-Type:\"application/json\", Transfer-Encoding...
by vivekmisra Observer in Splunk Search 09-16-2021
0 3
0
3
stavbergen
Hello I have 3 sets of data and I want to join them all but they don't have the same common field, the trouble I'm ha...
by stavbergen Explorer in Splunk Search 09-16-2021
0 1
0
1
shaquibk
My requirement is something like this:Lookup 1 looks like thisName | Avg_CountA          | 3B          |  7D         ...
by shaquibk Explorer in Splunk Search 09-16-2021
0 3
0
3
AlexH
looHi everybody, i hope you can help me with my pb.i want add fields in a lookup with a request that dont use index ....
by AlexH Engager in Splunk Search 09-16-2021
0 2
0
2
Georgi
I am parsing SFTP logs of file downloads and want to count how many bytes a specific user downloaded at what time. Th...
by Georgi Engager in Splunk Search 09-16-2021
0 4
0
4
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Shape the Future of Splunk: Join the Product Research Lab!

Join the Splunk Product Research Lab and connect with us in the Slack channel #product-research-lab to get ...