Splunk Search

Splunk Search
Community Activity
SamHTexas
Please share a SPL to show if a certain event code ( Windows) from Security logs is being ingested into Splunk. I app...
by SamHTexas Builder in Splunk Search 08-31-2021
0 3
0
3
nicofantinato
Hello to everybody,we are trying to set a search that makes a diff between two files of two different days. This is t...
by nicofantinato Path Finder in Splunk Search 08-30-2021
0 2
0
2
ramki1459
i have data something like thisinput: firstname=value1,lastname=value2,email=value3,address=value4.. etc firstname=v...
by ramki1459 Explorer in Splunk Search 08-30-2021
0 2
0
2
learningsplunk
Is this possible to transform a data set from :  TimeUserNumber of Errors9 pmJosh29 pmAndy110 pmJosh010 pmAndy111 pmJ...
by learningsplunk Path Finder in Splunk Search 08-30-2021
0 2
0
2
MayankChandra
I am using timewrap function to compare data for a particular day of the week with same day of the week for last 4 we...
by MayankChandra Engager in Splunk Search 08-30-2021
0 0
0
0
MayankChandra
I am using timewrap to compare data for a particular day of the week with same day of the week for last 4 weeks. i.e ...
by MayankChandra Engager in Splunk Search 08-30-2021
0 3
0
3
OctoberP
Would you know how can I display an overlay of two charts that have different time ranges on the X-axis?For example, ...
by OctoberP Explorer in Splunk Search 08-30-2021
0 5
0
5
prajwal_94
I am having below search string and suppose the file "magic_new.log" has no events and the requirement is to show tha...
by prajwal_94 Explorer in Splunk Search 08-30-2021
0 3
0
3
francly
Hi, I get the exactly same count for avg and peak, any issue with my query? index=a sourcetype=ab earliest=-30d lates...
by francly Explorer in Splunk Search 08-30-2021
0 3
0
3
whrg
Hello all,I would like to use the table command without changing the order of events.To give an example: When searchi...
by whrg Motivator in Splunk Search 08-30-2021
0 7
0
7
RanjithaN99
Hi ,A newbie to Splunk here. I have found the query for  login info for users on a host: index=os  source=var/log/sec...
by RanjithaN99 Explorer in Splunk Search 08-30-2021
0 6
0
6
francly
Hi, how do I get subtotal count for each Host and Total for all count, in additional count for all different status.H...
by francly Explorer in Splunk Search 08-30-2021
0 4
0
4
splunkymage
I would like to write in splunk a nested if loop: What I want to achieve:if buyer_from_France:                    do ...
by splunkymage Observer in Splunk Search 08-29-2021
0 0
0
0
att35
Hi,We are in the process of migrating all Apps/Config's from an older standalone instance(7.2.4.2) to a newer SHC(8.1...
by att35 Builder in Splunk Search 08-29-2021
0 0
0
0
Traer001
Hello all,I am struggling to find a solution for this. I have two different searches.One shows log entries where syst...
by Traer001 Path Finder in Splunk Search 08-28-2021
0 7
0
7
SabariRajanT
Hi All,I will be getting a list of MD5 hash values in my logs. Need a regex expression for the below. Therefore whene...
by SabariRajanT Path Finder in Splunk Search 08-28-2021
0 7
0
7
sepkarimpour
My search currently gives me some statistics regarding response times including total count, average, min, max and 99...
by sepkarimpour Path Finder in Splunk Search 08-27-2021
0 11
0
11
Abha11
Hi All,I have just copied across working props and transforms stanza from one HF to another for sqs logs. however it’...
by Abha11 Explorer in Splunk Search 08-27-2021
0 2
0
2
aohls
I wanted to establish an alert that will look at the past hour for the past 6 weeks and make some comparisons. So for...
by aohls Contributor in Splunk Search 08-27-2021
0 4
0
4
joe06031990
Hi I am trying to find the min, max and AVG for Percentile 99,90 and 75 with the bellow: index="main" source="C:\\ine...
by joe06031990 Communicator in Splunk Search 08-27-2021
0 0
0
0
rodrigomarfei
I have the following sourcers: "inserted" and "deleted"In the "inserted" i have these fields:Id, Timestamp1, 2021-08-...
by rodrigomarfei Explorer in Splunk Search 08-27-2021
0 4
0
4
splunker1789
Suddenly transforming commands stopped working unless I search in verbose mode. What could cause this issue? This onl...
by splunker1789 Engager in Splunk Search 08-27-2021
0 0
0
0
sravani27
Hi, How can I generate a random number between 1 to 20. I random() function doesn't allow to specify a range. please ...
by sravani27 Path Finder in Splunk Search 08-27-2021
4 6
4
6
zakkie
I want a report when total events less than 9500000 in a day from sourcetype.Also I tried below query, but its giving...
by zakkie Engager in Splunk Search 08-27-2021
0 1
0
1
_stoff
I have multiple alerts with searches similar to the one below where fields are renamed to a numeric ordering. The sea...
by _stoff Observer in Splunk Search 08-27-2021
0 1
0
1
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...