Splunk Search

Splunk Search
Community Activity
disha
I am having a search in my view code and displaying results in the form of table. small example result: custid Eve...
by disha Contributor in Splunk Search 09-14-2021
1 6
1
6
alexspunkshell
Hi, I am trying to export PDF in Splunk Security Essential App --> Analytics Advisor --> Mitre ATT&CK Framework --> E...
by alexspunkshell Contributor in Splunk Search 09-14-2021
0 0
0
0
oleg106
Hello,I have 2 CSV lookups updating several times a day.  One (A) is from CMDB with the entire list of assets (hostna...
by oleg106 Explorer in Splunk Search 09-14-2021
0 1
0
1
met
I've got some logs I need to join and put on the same row.I've tried a few different ways and searched the community ...
by met Engager in Splunk Search 09-14-2021
0 6
0
6
Martin583
I see the following errors when running a search against data in a vix.Martin583_0-1631632271501.pngWe have recently ...
by Martin583 Explorer in Splunk Search 09-14-2021
0 0
0
0
sujith_kumar
Hi All,We have an index indexA, which gets data from multiple agencies agentA, agentB, agentC, and another index inde...
by sujith_kumar New Member in Splunk Search 09-14-2021
0 1
0
1
splunk_u1
Hi there!Please allow me to admit, I'm newbie to splunk + sigma  rules for detection.In my test environment, I have i...
by splunk_u1 Engager in Splunk Search 09-14-2021
1 0
1
0
SplunkDash
Hello,I have some issues writing PROPS configuration for XML source file. Sample XML events (2 Events) are given belo...
by SplunkDash Motivator in Splunk Search 09-14-2021
0 2
0
2
_joe
I am looking for a way to limit user searches to only the most recent 30 days, specifically for SmartStore purposes. ...
by _joe Contributor in Splunk Search 09-14-2021
0 5
0
5
Sam2
Hello all, I'm trying to get the stats of the count of events per day, but also the average. ...| stats count by...
by Sam2 Explorer in Splunk Search 09-14-2021
1 7
1
7
AKG1_old1
Hello, I am using child dataset in data model. Not sure how to use fields which are inherited from parent data model...
by AKG1_old1 Builder in Splunk Search 09-14-2021
0 1
0
1
Cydraech
Hello people,I'm very new to Splunk and I'm trying to create a dashboard with the "Statistics Table" Visualisation, t...
by Cydraech Explorer in Splunk Search 09-14-2021
0 3
0
3
SamHTexas
Need help with an SPL to create a search for Please. /opt/splunk/etc/apps/meta_woot/lookups/meta_woot_server_guid.csv...
by SamHTexas Builder in Splunk Search 09-13-2021
0 1
0
1
A44D
There are some keywords that cannot be searched after changing the App.Even more specific keywords within a specific ...
by A44D Explorer in Splunk Search 09-13-2021
0 3
0
3
puet
So I'm trying to change a token when i click a button.Tried it like this:require([ 'jquery', 'splunkjs/mvc', ...
by puet Explorer in Splunk Search 09-13-2021
0 4
0
4
GoodApprentice
Hallo,i am trying to make a Dashboard that takes the time from reports of jobs.That time is not the same as the time ...
by GoodApprentice New Member in Splunk Search 09-13-2021
0 1
0
1
wasifchowdhury
wasifchowdhury_0-1631305861286.png I have this query and I want to add another data series/line to this chart. How ca...
by wasifchowdhury Explorer in Splunk Search 09-13-2021
0 3
0
3
mztopp
For example:|  tstats count from datamodel=test where * by test.url, test.user | rename test.* AS *| search NOT    [ ...
by mztopp Explorer in Splunk Search 09-13-2021
0 4
0
4
Susha
Hi Team,I want to transpose few fields as below ..(index=abc OR index=def) category= * OR NOT blocked =0 AND NOT bloc...
by Susha Engager in Splunk Search 09-13-2021
0 5
0
5
osasfrancis
I have the below test raw logsCEF:0|Forcepoint|Forcepoint DLP|8.8.0|55564097|DLP Syslog|2| act=Permitted duser=destus...
by osasfrancis Path Finder in Splunk Search 09-13-2021
0 6
0
6
nathanluke86
I have a search query to display external files shares that are active (Sharepoint/Onedrive).  This is working and sh...
by nathanluke86 Communicator in Splunk Search 09-13-2021
0 1
0
1
g_paternicola
 Hi everyone, I'm trying to get a simple text from a raw event, but I can't make it works.The event looks like this:2...
by g_paternicola Path Finder in Splunk Search 09-13-2021
0 1
0
1
MuratKuru
Hi AllWe have a distributed environment (no cluster).Splunk Enterprise Version 8.1.3Is there a way to create a dashbo...
by MuratKuru Explorer in Splunk Search 09-13-2021
0 1
0
1
PavanSeerapu
I'm trying to extract field That looks like "Alert-source-key":"[\"abcdd-gdfc-mb40-a801-e40fd9db481e\"]"  I have trie...
by PavanSeerapu Explorer in Splunk Search 09-13-2021
0 4
0
4
indeed_2000
Hiwhat is the spl command to extract users.Here is the sample:2021-09-12 21:40:03,938 ERROR [APPNAME] User H83952 inv...
by indeed_2000 Motivator in Splunk Search 09-13-2021
0 1
0
1
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...
Top Solution Authors