Splunk Search

Splunk Search
Community Activity
moinyuso96
Currently my Splunk Search is shown as below:SerialDescriptionDateTimeStartTimeEndTimeMY111Registration2021-05-01 00:...
by moinyuso96 Path Finder in Splunk Search 08-22-2021
0 1
0
1
keesling
When editing searches in ITSI, control-e expands macros and control-z undoes the last change.  I know this only by be...
by keesling Engager in Splunk Search 08-21-2021
0 0
0
0
RYEAMAN
0
1
SplunkDash
Hello,Please let me know how I would break the events, write TIME_PREFIX and TIME_FORMAT for my PROPS Conf.  file  fo...
by SplunkDash Motivator in Splunk Search 08-20-2021
0 11
0
11
cyberdiver
My goal is to calculate a score of confidence based on how anomalous the amount of failed logins is compared to activ...
by cyberdiver Explorer in Splunk Search 08-20-2021
0 0
0
0
raysonjoberts
I have a csv file that that I am using for a lookup which has multiple values in a particular field. I am trying to d...
by raysonjoberts Path Finder in Splunk Search 08-20-2021
0 4
0
4
EberlinM
How can I split a field, into many other fields, but without using a delimiter, and using the position range instead?...
by EberlinM Engager in Splunk Search 08-20-2021
0 2
0
2
miyuog13
I want to get a predicted value from the data statistics.Is it possible to output the predicted value for each patter...
by miyuog13 Engager in Splunk Search 08-20-2021
0 1
0
1
Splunkin
Hi Splunkers,I have query where i want to filter out all the legitimate process by path process which ive identify th...
by Splunkin Explorer in Splunk Search 08-20-2021
0 1
0
1
Karthikeyan
Hi Experts,I have a requirement to in which a table is ingested to Splunk. And the table has a field named Time showi...
by Karthikeyan Engager in Splunk Search 08-20-2021
0 3
0
3
pranay_adla
We aren't supposed to see the same results from both sites. For a given event we should only see it coming from one s...
by pranay_adla Explorer in Splunk Search 08-20-2021
0 2
0
2
datamine
Hi All,Can someone please help me if our subsearch has results more than 50000 and we need to append those as well to...
by datamine Loves-to-Learn Lots in Splunk Search 08-20-2021
0 3
0
3
chiilii
I have a dynamic table extracted from a search result. Example Table1 that I can get:ErrorCodeComputerInternet Connec...
by chiilii Explorer in Splunk Search 08-20-2021
0 4
0
4
kaurinko
Dear Sirs, I am using lookup to enrich my event data on the fly, and it seems to work fine. However, every invocation...
by kaurinko Communicator in Splunk Search 08-20-2021
0 2
0
2
KBudhale
Hi I have two searches for  which searches pacs.200(input) and pacs.800(output) records  for an ID inxdex="xyz" sourc...
by KBudhale Observer in Splunk Search 08-20-2021
0 4
0
4
babypal6
Hi,How do I get APIs for measuring Units that is SVC(Splunk Virtual Compute Unit) and vCPU (Virtual CPU) in splunk?al...
by babypal6 New Member in Splunk Search 08-19-2021
0 0
0
0
spisiakmi
Hi, can anybody help me please?I have _json indexed events in Splunk.19.08.21 08:26:27,746{<!-- --> [-]   name: S8.ManuelFail...
by spisiakmi Contributor in Splunk Search 08-19-2021
0 1
0
1
sharada
Hi Team,Can you help me with splunk query which gives  me visualization for scheduled searches spiking top of the hou...
by sharada Loves-to-Learn Everything in Splunk Search 08-19-2021
0 2
0
2
lv66735
index&#61;app_pc "Last Executed SQL" "Tablespace"| rex field&#61;_raw &lt;SERVICE_NAME&gt;(?&lt;SERVICE_NAME&gt;.*)&lt;/SERVICE_NAME&gt;| rex f...
by lv66735 New Member in Splunk Search 08-19-2021
0 1
0
1
joe06031990
Hi,I currently have the bellow Search to find the 99% Percentile for Response Time: index&#61;test sourcetype&#61;test|eval r...
by joe06031990 Communicator in Splunk Search 08-19-2021
0 0
0
0
randy_moore
Hi  I have a input token in my dashboard for register number called $tok_reg_num$.The customers can put in a specific...
by randy_moore Path Finder in Splunk Search 08-19-2021
0 2
0
2
bosseres
Hello,I need a help with using wildcards in lookup. I want to exclude from search results fields, which are located i...
by bosseres Contributor in Splunk Search 08-19-2021
0 2
0
2
C37996518
index&#61;Myindex sourcetype&#61;mine mysearch    | eval Result&#61;if(Apple&#61;"1","Bad","Good")| stats count by Result The search ...
by C37996518 Explorer in Splunk Search 08-19-2021
0 3
0
3
vitorvmiguel
Hello, I'm trying to do a subsearch like this one: index &#61; raw_internet_cartonista programa &#61; ILCL [ search index ...
by vitorvmiguel Explorer in Splunk Search 08-19-2021
0 8
0
8
gotarr
HiIn my search table are some multible events with one timestamp.I need to split them.Does somebody has any idea?Than...
by gotarr Explorer in Splunk Search 08-19-2021
0 6
0
6
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...