| Thread Info | |||||
|---|---|---|---|---|---|
| 
        So, I have multiple ip addresses i want to combine them using regex or normal by supplying dashes and compare them to...
        
         
           by 
           
                
                    
                        commanman
                    
                
           
             
             
               Explorer
             
           
           in
           Splunk Search
           
           
              
               09-02-2021
             
           
         
        | 
		
		0
   | 
	  
	  6
	 | |||
| 
        I want Splunk query related to:1. Firewalls availability2. Endpoint protection availability
  For my own work, you ca...
        
         
           by 
           
                
                    
                        Rawabi1994
                    
                
           
             
             
               New Member
             
           
           in
           Splunk Search
           
           
              
               09-05-2021
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Hi There,
  In my logs, the specific field "Other Parameters" contains a lot of logs. I want it to extract the logs a...
        
         
           by 
           
                
                    
                        alexspunkshell
                    
                
           
             
             
               Contributor
             
           
           in
           Splunk Search
           
           
              
               09-04-2021
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        I am using Splunk Cloud and I have defined a sourcetype (from the UI) of category Structured and Indexed Extractions ...
        
         
           by 
           
                
                    
                        eduzamora
                    
                
           
             
             
               Engager
             
           
           in
           Splunk Search
           
           
              
               11-20-2018
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        Hi Team,
   
  I am finding a way to convert UTC to EPOCH   and vice versa for my search query
   
  Sample is here -...
        
         
           by 
           
                
                    
                        SK2007
                    
                
           
             
             
               Loves-to-Learn Lots
             
           
           in
           Splunk Search
           
           
              
               09-04-2021
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        How may I automatically generate a file on an on-prem server from the results of a search query
        
         
           by 
           
                
                    
                        keesling
                    
                
           
             
             
               Engager
             
           
           in
           Splunk Search
           
           
              
               09-03-2021
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        Hello, 
  To pull in specific events in splunk i am trying to write a regex to identify lines that matches both the c...
        
         
           by 
           
                
                    
                        saurabhkharkar
                    
                
           
             
             
               Path Finder
             
           
           in
           Splunk Search
           
           
              
               09-03-2021
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I have a csv file query as follows :- 
  
   | inputlookup file_1.csv
  
  which gives the result as follows in a sin...
        
         
           by 
           
                
                    
                        pavanae
                    
                
           
             
             
               Builder
             
           
           in
           Splunk Search
           
           
              
               09-02-2021
             
           
         
        | 
		
		1
   | 
	  
	  1
	 | |||
| 
        Hi team, 
   
  I am creating a query to fetch a unique id from different events which are having different statuses....
        
         
           by 
           
                
                    
                        rkishoreqa
                    
                
           
             
             
               Communicator
             
           
           in
           Splunk Search
           
           
              
               09-01-2021
             
           
         
        | 
		
		0
   | 
	  
	  4
	 | |||
| 
        Hello everybody,
  I'm using an spl query that extracts some values from a lookup and sends them to a web API via POS...
        
         
           by 
           
                
                    
                        D0do
                    
                
           
             
             
               Explorer
             
           
           in
           Splunk Search
           
           
              
               09-03-2021
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        There are multiple sourcetypes in index="main".I'm trying to stats at SOURCETYPE number one and I need a field of sou...
        
         
           by 
           
                
                    
                        nnonm111
                    
                
           
             
             
               Path Finder
             
           
           in
           Splunk Search
           
           
              
               09-02-2021
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        I'm unable to use the Validate & Package function of Add-on builder. When I run it, it says 'preparing validation' th...
        
         
           by 
           
                
                    
                        kfennell
                    
                
           
             
             
               Engager
             
           
           in
           Splunk Search
           
           
              
               09-02-2021
             
           
         
        | 
		
		0
   | 
	  
	  0
	 | |||
| 
        Hi,
  I need to calculate average of response time in seconds for my application.
   
  Query i am using
  index="pro...
        
         
           by 
           
                
                    
                        Madhusri
                    
                
           
             
             
               Engager
             
           
           in
           Splunk Search
           
           
              
               09-02-2021
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        Hi,
  I'm having an odd issue. I made some field extractions and validated them through Regex101. However only some o...
        
         
           by 
           
                
                    
                        ebs
                    
                
           
             
             
               Communicator
             
           
           in
           Splunk Search
           
           
              
               09-01-2021
             
           
         
        | 
		
		0
   | 
	  
	  6
	 | |||
| 
        I have two events as below -
  event 1 
   
  
   "id=1 api=xyz apiResTime=50"
  
   
  event 2
   
  
   "id=1 api=x...
        
         
           by 
           
                
                    
                        rohinisb91
                    
                
           
             
             
               Observer
             
           
           in
           Splunk Search
           
           
              
               09-02-2021
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        This is my splunk query
   
  index=xxxxx "searchTerm")|rex "someterm(?<errortype>)" | timechart count byerrortype sp...
        
         
           by 
           
                
                    
                        nsingh49
                    
                
           
             
             
               Explorer
             
           
           in
           Splunk Search
           
           
              
               09-01-2021
             
           
         
        | 
		
		0
   | 
	  
	  2
	 | |||
| 
        Greetings,
  I want to exclude search results if a field contains a value compared against another field with additio...
        
         
           by 
           
                
                    
                        SplunkLunk
                    
                
           
             
             
               Path Finder
             
           
           in
           Splunk Search
           
           
              
               09-02-2021
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Helloi have a table that looks like this :
  
   
   and i want it to look like this:
  
   
   
  so the type values...
        
         
           by 
           
                
                    
                        sarit_s
                    
                
           
             
             
               Communicator
             
           
           in
           Splunk Search
           
           
              
               08-30-2021
             
           
         
        | 
		
		0
   | 
	  
	  16
	 | |||
| 
        Hi,
  We are sending a reduced size logs to out splunk to do some smarts. We realized for the past year or so one of ...
        
         
           by 
           
                
                    
                        vantoryc
                    
                
           
             
             
               Explorer
             
           
           in
           Splunk Search
           
           
              
               08-04-2021
             
           
         
        | 
		
		0
   | 
	  
	  9
	 | |||
| 
        Hi,
  I want to search    "xyzetc\";0,                   ---this is my string .
  Unable to search this exact pattern...
        
         
           by 
           
                
                    
                        opamlan
                    
                
           
             
             
               Loves-to-Learn
             
           
           in
           Splunk Search
           
           
              
               09-02-2021
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        I'm trying to calculate percentages based on the number of events per vary group. There are actually a lot of events,...
        
         
           by 
           
                
                    
                        homer07
                    
                
           
             
             
               Explorer
             
           
           in
           Splunk Search
           
           
              
               09-02-2021
             
           
         
        | 
		
		0
   | 
	  
	  4
	 | |||
| 
        I want to use the subsearch to get start and endtime of the newest transaction (here a botsession).
  The subsearch a...
        
         
           by 
           
                
                    
                        TheEggi98
                    
                
           
             
             
               Path Finder
             
           
           in
           Splunk Search
           
           
              
               09-02-2021
             
           
         
        | 
		
		0
   | 
	  
	  3
	 | |||
| 
        Hello
  I have a table with 3 columns
  1 is strings
  and 2 columns with numbers
  is there a way to sort the table ...
        
         
           by 
           
                
                    
                        sarit_s
                    
                
           
             
             
               Communicator
             
           
           in
           Splunk Search
           
           
              
               09-02-2021
             
           
         
        | 
		
		0
   | 
	  
	  6
	 | |||
| 
        Hi,
  Current piechart
  
   
  In the above piechart highlighted cities details are not displaying.have to use mouse...
        
         
           by 
           
                
                    
                        Madhusri
                    
                
           
             
             
               Engager
             
           
           in
           Splunk Search
           
           
              
               09-02-2021
             
           
         
        | 
		
		0
   | 
	  
	  1
	 | |||
| 
        Hi Guys, I would like to check if it's possible to prevent some data from showing up in the search. 
  Below is what ...
        
         
           by 
           
                
                    
                        splunknewbie81
                    
                
           
             
             
               Engager
             
           
           in
           Splunk Search
           
           
              
               09-02-2021
             
           
         
        | 
		
		0
   | 
	  
	  5
	 |