Splunk Search

Splunk Search
Community Activity
N-W
I have a dashboard with several different base searches that is transformative searches. However I get the error of m...
by N-W Explorer in Splunk Search 08-09-2021
0 1
0
1
ebs
Hi,I have several datasets that have the exact same format with only the source of the data differing. I've duplicate...
by ebs Communicator in Splunk Search 08-09-2021
0 1
0
1
jokovitch
I have JSON file around 6 GBCan I upload this file to specific Index instead of send it with POST object by object?
by jokovitch Explorer in Splunk Search 08-09-2021
0 1
0
1
Sivakesava574
How to pass a field from subsearch to main search and perform search on another sourcei am trying  to use  below to s...
by Sivakesava574 Explorer in Splunk Search 08-09-2021
0 5
0
5
sam1010
When I try to push to search head from deployer using command     /opt/splunk/bin/splunk apply shcluster-bundle -targ...
by sam1010 Explorer in Splunk Search 08-09-2021
0 1
0
1
anooshac
Hi all, i have a query for transaction,source="abc_data1_*" index="testing" sourcetype="_json" | transaction startswi...
by anooshac Communicator in Splunk Search 08-09-2021
0 7
0
7
jeck11
Hi everyone,I have a very basic search outputting two types of entries into a field called "event". I need to get a c...
by jeck11 Path Finder in Splunk Search 08-09-2021
0 4
0
4
yacht_rock
How can I hide/not display a column in a table if every value in that column is null? Sometimes the column will have ...
by yacht_rock Explorer in Splunk Search 08-08-2021
2 5
2
5
Pramodkuber
{ "message": { "correlation": "12345678", "headers": {}, "protocol": "HTTP/1.1", "remote": "111.11....
by Pramodkuber Engager in Splunk Search 08-08-2021
0 4
0
4
sam1010
when I type this command in git bash /opt/splunk/bin/splunk apply shcluster-bundle -target   to get cluster status I ...
by sam1010 Explorer in Splunk Search 08-08-2021
0 1
0
1
jokovitch
I have Drilldown that show me some Test and this is Onclick: index=main |where Test="$click.value$" The problem is wh...
by jokovitch Explorer in Splunk Search 08-08-2021
0 3
0
3
prasant
Hi Splunk experts,I have below usecase and using below query  index=Index1 app_name IN ("customer","contact") | rex ...
by prasant Path Finder in Splunk Search 08-08-2021
0 4
0
4
cfbridgewater
i have view that i want to use to filter hosts by development tier (QA, STAGE, PROD). The drop down is configured ...
by cfbridgewater New Member in Splunk Search 08-07-2021
0 8
0
8
joeybagofdonuts
I'm trying to build a search that will return an event and the severity of that event. I have the events with wildcar...
by joeybagofdonuts Explorer in Splunk Search 08-07-2021
0 1
0
1
sc_admin2
I'm using HTTP collector on my free trial cloud instance.URLs I tried: https://inputs.<MY_SPLUNK_INSTANCE_ID>.splunkc...
by sc_admin2 New Member in Splunk Search 08-07-2021
0 1
0
1
denissotoacc
I have an Index called myindex:NAMEAGECITYCOUNTRYLEGAL AGEDenis17LondonUKNODenis18  YESMaria17RosarioArgentinaNOMaria...
by denissotoacc Path Finder in Splunk Search 08-06-2021
0 1
0
1
rai4shambhavi
I am consuming some data using an API, I want to calculate avg time it took for all my customer, after each ingestion...
by rai4shambhavi Explorer in Splunk Search 08-06-2021
0 10
0
10
newtosplunk14
I want to search for endpoints  /api/work/12345678 i.e api/work/(8 digt number). My below query gives me all the thre...
by newtosplunk14 Explorer in Splunk Search 08-06-2021
0 6
0
6
sam4nik
Hi, we have one inputlookup file X1.csv and one index=x2, we want to fetch alarm details from index for device name t...
by sam4nik Engager in Splunk Search 08-06-2021
0 1
0
1
donB
All my log statements are of below format.{ "source": "stdout", "tag": "practice/myapplication:4444a76b917", "labe...
by donB Loves-to-Learn Lots in Splunk Search 08-06-2021
0 3
0
3
thanhnhhe130698
Hi, I have a custom search get input as raw string, but when I combine splunk don't understand that, it always return...
by thanhnhhe130698 Engager in Splunk Search 08-06-2021
0 3
0
3
sachin9911
Hi,I have written a script which runs for every after 1 hr, here the 24 hr window is from 07am to next day 06:00amMy ...
by sachin9911 Loves-to-Learn Lots in Splunk Search 08-06-2021
0 7
0
7
jaysonpryde
Good day,As mentioned, I wanted to flatten a series of multivalue fields, and make it just like single row entries, w...
by jaysonpryde Path Finder in Splunk Search 08-05-2021
1 2
1
2
DougiieDee
I have two different hosts . hostA-1, hostA-2, hostA-3, hostA-4, hostA-5 . hostB-5, hostB-6, hostB-7, hostB-8. I want...
by DougiieDee Explorer in Splunk Search 08-05-2021
0 4
0
4
brianbcampbell
  I have a field named Msg which contains json. That json contains some values and an array. I need to get each item ...
by brianbcampbell Engager in Splunk Search 08-05-2021
0 2
0
2
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...