Splunk Search

Splunk Search
Community Activity
aubine
(This is a continuation of https://community.splunk.com/t5/Splunk-Search/Creating-a-search-that-looks-up-values-from-...
by aubine Explorer in Splunk Search 09-01-2021
0 0
0
0
aubine
I have two logfiles, logfile1.log and logfile2.log. I have created their own field extractions for both of them. Here...
by aubine Explorer in Splunk Search 09-01-2021
0 4
0
4
newtosplunk14
From the logs, I need to get the count of events from the below msg field value which matches factType=COMMERCIAL and...
by newtosplunk14 Explorer in Splunk Search 09-01-2021
0 2
0
2
klaudiac
Hi guys,  Probably very simple question but I just tangled myself in the logic. I want to create 2 fields, one with t...
by klaudiac Path Finder in Splunk Search 09-01-2021
0 6
0
6
marco_carolo
Hello there.What I'm trying to do is the following: search | bucket span=60s _time | stats count by _time | ... I wan...
by marco_carolo Path Finder in Splunk Search 09-01-2021
0 13
0
13
BernardEAI
I'm working on calculating the storage space taken up by a specific user. I would like to calculate the total size of...
by BernardEAI Communicator in Splunk Search 09-01-2021
0 4
0
4
SamHTexas
I need to find a list of saved searches that don't use the index name in searching please. Any way to list the name o...
by SamHTexas Builder in Splunk Search 08-31-2021
0 4
0
4
Madhusri
Hi,Current tableExpectedfstatuscountsuccess604Userdefined39 Need to sum the "password mismach","policy policy constra...
by Madhusri Engager in Splunk Search 08-31-2021
0 2
0
2
sahil237888
Hi Team, I have data with me as below. 2021-08-31 00:05:28|Test|Event|[c.f.d.aop.sql.database ] 2ms :testing82021-08-...
by sahil237888 Path Finder in Splunk Search 08-31-2021
0 1
0
1
SamHTexas
How do I search (any SPLs) for Dashboards that are not working (either built-in or created by users) or having errors...
by SamHTexas Builder in Splunk Search 08-31-2021
0 1
0
1
SamHTexas
How do I make sure the the ES KVstores are working & mapped properly to use them & avoid such errors? I appreciate so...
by SamHTexas Builder in Splunk Search 08-31-2021
0 0
0
0
SamHTexas
I am getting an error with MITRE ATT&CK app that the API key needs to be corrected. Please advise. Thanks a million.
by SamHTexas Builder in Splunk Search 08-31-2021
0 0
0
0
iamsplunker
Hello Splunk Community,I've a query which lists accountNumber , targetAccountNumber, eventType, eventTimeThe query is...
by iamsplunker Communicator in Splunk Search 08-31-2021
0 4
0
4
nnonm111
I'm going to stats through two lookups.srcip.csv fieldsrc_ip , subnetmaksdest.csv fielddest_ip,subnetmakssrc_ip , des...
by nnonm111 Path Finder in Splunk Search 08-31-2021
0 1
0
1
moinyuso96
The contents of my lookup file, test12345.csv is shown below.ProductNumber,SerialNumber,StatusDateTime,Status"A12345 ...
by moinyuso96 Path Finder in Splunk Search 08-31-2021
0 3
0
3
splunkymage
Hello all, I need help with this :((How to use derivatives of 1st function results into the 2nd function in splunk? P...
by splunkymage Observer in Splunk Search 08-31-2021
0 1
0
1
Madhusri
Hi Team,Current tablecolumnrow1row2statusfailuresuccess My Requirement-1------if the row 1 has value as failure and i...
by Madhusri Engager in Splunk Search 08-31-2021
0 1
0
1
SamHTexas
Please share a SPL to show if a certain event code ( Windows) from Security logs is being ingested into Splunk. I app...
by SamHTexas Builder in Splunk Search 08-31-2021
0 3
0
3
nicofantinato
Hello to everybody,we are trying to set a search that makes a diff between two files of two different days. This is t...
by nicofantinato Path Finder in Splunk Search 08-30-2021
0 2
0
2
ramki1459
i have data something like thisinput: firstname=value1,lastname=value2,email=value3,address=value4.. etc firstname=v...
by ramki1459 Explorer in Splunk Search 08-30-2021
0 2
0
2
learningsplunk
Is this possible to transform a data set from :  TimeUserNumber of Errors9 pmJosh29 pmAndy110 pmJosh010 pmAndy111 pmJ...
by learningsplunk Path Finder in Splunk Search 08-30-2021
0 2
0
2
MayankChandra
I am using timewrap function to compare data for a particular day of the week with same day of the week for last 4 we...
by MayankChandra Engager in Splunk Search 08-30-2021
0 0
0
0
MayankChandra
I am using timewrap to compare data for a particular day of the week with same day of the week for last 4 weeks. i.e ...
by MayankChandra Engager in Splunk Search 08-30-2021
0 3
0
3
OctoberP
Would you know how can I display an overlay of two charts that have different time ranges on the X-axis?For example, ...
by OctoberP Explorer in Splunk Search 08-30-2021
0 5
0
5
prajwal_94
I am having below search string and suppose the file "magic_new.log" has no events and the requirement is to show tha...
by prajwal_94 Explorer in Splunk Search 08-30-2021
0 3
0
3
Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...