Splunk Search

Splunk Search
Community Activity
ilya
Hi, Team!I have a rule:index = example source = "Rule" | fields user, src_time, src_app, src, src_lat, src_long, src_...
by ilya New Member in Splunk Search 09-25-2021
0 1
0
1
yoan
Hello,I'm trying to make a report to count the number of interfaces available and used.I found the query that matches...
by yoan Explorer in Splunk Search 09-25-2021
0 2
0
2
middlemiddle
I have an alert that joins RAW events with a lookup containing thresholds (and yes, it has to be a join).  I would li...
by middlemiddle Explorer in Splunk Search 09-24-2021
0 3
0
3
alexrod559
Hey guys,So I have two look up tables table1 and table 2. Table 1 ID Username Fname Lname Table 2 Username What i w...
by alexrod559 Loves-to-Learn Lots in Splunk Search 09-24-2021
0 3
0
3
graziaedu
I have a log as a belowcod:5678,status:600cod:9012,staus:600cod:1234,status:600cod: 1234,status:900cod:4987,status:60...
by graziaedu Explorer in Splunk Search 09-24-2021
0 7
0
7
aekruse
I have a search that counts the amount of times a user runs a program, and then returns the usernames of the users wh...
by aekruse New Member in Splunk Search 09-24-2021
0 0
0
0
DariusNG
Hi, I am trying to do a Lookup with a calculated field.Details:I have a csv containing three coloumns:DomainName,Thre...
by DariusNG Engager in Splunk Search 09-24-2021
0 4
0
4
Praj
Hi Folks,I am getting the status of my applications(Server-001 and Server-002)every 15mins like the below example in ...
by Praj Loves-to-Learn in Splunk Search 09-24-2021
0 3
0
3
syazwani
Hi, i want to extract bytes fields (using the bytes values) from this:Sep 23 14:11:52 XXX.XXX.X.XX date=2021-09-23 ti...
by syazwani Path Finder in Splunk Search 09-24-2021
0 2
0
2
Bleepie
Dear Splunk Community,I need help extracting a string (CTJT) plus any 6 characters after. CTJT is the start of an err...
by Bleepie Communicator in Splunk Search 09-24-2021
0 5
0
5
corti77
Hi,recently I deploy the Splunk connect for Syslog in docker and my first candidate to use it was our Citrix ADC VPX....
by corti77 Contributor in Splunk Search 09-24-2021
0 1
0
1
indeed_2000
HiI have key value that call (duration) in my application log that show duration of each job done.each day when I get...
by indeed_2000 Motivator in Splunk Search 09-24-2021
0 0
0
0
wtaylor149
Issue I'm facing:My use case is to detect a successful ssh login from an external ip_address.I have my linux logs in:...
by wtaylor149 Explorer in Splunk Search 09-23-2021
0 1
0
1
sini
Hi,I am asking if it's possible to ingest logfiles where one logline would contain a DateTime and the following lines...
by sini Explorer in Splunk Search 09-23-2021
0 1
0
1
pengium12
What could be reason that there are no data available after grouping using a transaction command? Before grouping usi...
by pengium12 New Member in Splunk Search 09-23-2021
0 4
0
4
ashvini_mishra
Here is log example - http://host/manager/resource_identifier/ids/getOrCreate/bulk?dscid=LuSxrA-1c42bb5b-f862-4861-89...
by ashvini_mishra Explorer in Splunk Search 09-23-2021
0 3
0
3
mm12
Hello,I have below query.  Getting data from dc_nfast index and putting it in test index and using this test index in...
by mm12 Explorer in Splunk Search 09-23-2021
0 1
0
1
m2oswald
I am using the Fundamentals 1 dataset to learn about lookups.  I have created a csv file with a column for productId ...
by m2oswald Explorer in Splunk Search 09-23-2021
0 6
0
6
sjringo
Here is the query I am starting with:index=anIndex sourcetype=aSourceType ("StringA" OR "StringB")| eval type=case(li...
by sjringo Contributor in Splunk Search 09-23-2021
0 7
0
7
DanielaEstera
Hello, I am trying to build a chart based on 3 fields: 2 calculated fields and a simple one:|  query="select OPEN_FY,...
by DanielaEstera Explorer in Splunk Search 09-23-2021
0 5
0
5
nls7010
A client of mine is asking:  I’m hoping you can help me with something. I am trying to analyze the volume to a partic...
by nls7010 Path Finder in Splunk Search 09-23-2021
0 10
0
10
ramarcsight
Hello Everyone I have a dashboard and when i ran it, it gave the following error: [IDX01] Failed to re-open lookup f...
by ramarcsight Explorer in Splunk Search 09-23-2021
0 5
0
5
indeed_2000
Hi, I create some field extraction in the past and remove them, but still on specific index when I use this spl show ...
by indeed_2000 Motivator in Splunk Search 09-23-2021
0 4
0
4
indeed_2000
HiI have key value that call (duration) in my application log that show duration of each job done.each day when I get...
by indeed_2000 Motivator in Splunk Search 09-23-2021
0 0
0
0
anooshac
Hello all,I haven't used rex many times.I have a URL like this, http;s://ab-abcd.in.xyz.com/abcd_xyz/job/example_name...
by anooshac Communicator in Splunk Search 09-23-2021
0 1
0
1
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...