Splunk Search

Splunk Search
Community Activity
im_bharath
Is Splunk Universal Forwader 9.2.5 supports to Windows Server 2025 ? Pls confirm. am seeing below in search community...
by im_bharath Path Finder in Splunk Search 02-04-2026
0 1
0
1
NanSplk01
I have a search started, but it's failing to run.  What I want is to eliminate some ID's and only bring back ID's tha...
by NanSplk01 Communicator in Splunk Search 02-03-2026
0 11
0
11
splunknoob4
I have two different searches which each get _time and username.I am trying to append these two searches, and compare...
by splunknoob4 Engager in Splunk Search 02-03-2026
0 12
0
12
karthi2809
Thank in Advance I have three source type Micro, application, CsID and i want to fetch details from these three sourc...
by karthi2809 Builder in Splunk Search 02-02-2026
0 2
0
2
BG_Splunk
Nightly, my organization puts a bunch of pieces of equipment into "maintenance mode" to do repairs and such on them. ...
by BG_Splunk Explorer in Splunk Search 01-28-2026
0 7
0
7
munang
A) index=main 192.168.172.10B) index=main src_ip=192.168.172.10 I thought B) was faster.Because the index is the same...
by munang Path Finder in Splunk Search 01-24-2026
0 2
0
2
JohnsonMarcus
Hi Team,Can someone help me with the Splunk query to input a lookupfile only when there is "no result & "no event"I t...
by JohnsonMarcus Engager in Splunk Search 01-23-2026
0 5
0
5
danielbb
Is there a way to pass a parameter to a report when calling it via -    curl -u user:password -k https://<api_server>...
by danielbb Motivator in Splunk Search 01-22-2026
0 3
0
3
PickleRick
Hello there.I was wondering... is there any way to generate _events_ in search?I mean, I know of the makeresults comm...
by SplunkTrust SplunkTrust in Splunk Search 01-22-2026
0 7
0
7
yuanliu
To groupby?  Or not to groupby?  That is the question. (Not really.  The question arises because trellis splitby seem...
by SplunkTrust SplunkTrust in Splunk Search 01-21-2026
0 2
0
2
SplunkDash
Hello, When I extract fields from the structured XML files using props.conf,  it is not extracted any key/value pairs...
by SplunkDash Motivator in Splunk Search 01-18-2026
0 6
0
6
donaldwayne1976
Which Splunk Technical Application for Microsoft will pull the TLS details for email/Exchange?  Need to be able to re...
by donaldwayne1976 Engager in Splunk Search 01-15-2026
0 2
0
2
SPLKrishna253
I am trying to onboard data from a syslog server. But the size on UF is increasing continuously and finally it gets b...
by SPLKrishna253 New Member in Splunk Search 01-14-2026
0 1
0
1
eholz1
Hello All,I have a generic question on using splunk. I have two systems, system A, and system B.If a device changes s...
by eholz1 Builder in Splunk Search 01-14-2026
0 4
0
4
wodrog
I've setup a dashboard based on charting trade queue information for our application which we are ingesting using a d...
by wodrog Engager in Splunk Search 01-12-2026
0 4
0
4
SN1
| makeresults| eval sourcetype=split("BBCN-Kunshan,BSCN-Suzhou,BBSP-Malasiya,BTCN-Tianjin,BXCN-Xian,BCCN-Suzhouheadqu...
by SN1 Path Finder in Splunk Search 01-12-2026
0 2
0
2
_olivier_
Hi splunkers,I need to decode base64 fields before indexing them.I found a very old post with no good proposal for th...
by _olivier_ Path Finder in Splunk Search 01-09-2026
0 3
0
3
coo
| chart sparkline count by a,bI would like to have sparkline table like...a | b | count | sparklinething1 | fo...
by coo Explorer in Splunk Search 01-08-2026
0 4
0
4
AbuNAM8
I am facin big issue while creating use case on splunk and adding the drill down on the content management. I went to...
by AbuNAM8 New Member in Splunk Search 01-07-2026
0 0
0
0
charliesfx
My splunk server is receiving metrics from collectd. I want to build a table showing the metrics, dimensions, and ...
by charliesfx Explorer in Splunk Search 01-06-2026
5 9
5
9
dinesh001kumar
I need to display the Success percentage for each service day wise.I am doing stats and then table getting output as ...
by dinesh001kumar Explorer in Splunk Search 01-05-2026
0 4
0
4
yuanliu
Riding the coattail of Re: Why is the null value in a JSON event not being parsed properly as NULL?, I constructed tw...
by SplunkTrust SplunkTrust in Splunk Search 01-04-2026
1 4
1
4
Didalready
When I use the search below, the event is 25 days ago, set search to last 30 takes 10 seconds, set to 90 days takes 2...
by Didalready Explorer in Splunk Search 12-29-2025
0 1
0
1
ThuLe
Hello everyone,I am trying to create a custom report that lists Investigations alongside the Notable Events (Findings...
by ThuLe Explorer in Splunk Search 12-29-2025
0 5
0
5
satyaallaparthi
Hi everyone,I need some help with a SPL query.I am trying to create an inventory of all queries running in my dashboa...
by satyaallaparthi Communicator in Splunk Search 12-27-2025
0 9
0
9
Get Updates on the Splunk Community!

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...