Splunk Search

Splunk Search
Community Activity
lv66735
index=app_pc "Last Executed SQL" "Tablespace"| rex field=_raw <SERVICE_NAME>(?<SERVICE_NAME>.*)</SERVICE_NAME>| rex f...
by lv66735 New Member in Splunk Search 08-19-2021
0 1
0
1
joe06031990
Hi,I currently have the bellow Search to find the 99% Percentile for Response Time: index=test sourcetype=test|eval r...
by joe06031990 Communicator in Splunk Search 08-19-2021
0 0
0
0
randy_moore
Hi  I have a input token in my dashboard for register number called $tok_reg_num$.The customers can put in a specific...
by randy_moore Path Finder in Splunk Search 08-19-2021
0 2
0
2
bosseres
Hello,I need a help with using wildcards in lookup. I want to exclude from search results fields, which are located i...
by bosseres Contributor in Splunk Search 08-19-2021
0 2
0
2
C37996518
index=Myindex sourcetype=mine mysearch    | eval Result=if(Apple="1","Bad","Good")| stats count by Result The search ...
by C37996518 Explorer in Splunk Search 08-19-2021
0 3
0
3
vitorvmiguel
Hello, I'm trying to do a subsearch like this one: index = raw_internet_cartonista programa = ILCL [ search index ...
by vitorvmiguel Explorer in Splunk Search 08-19-2021
0 8
0
8
gotarr
HiIn my search table are some multible events with one timestamp.I need to split them.Does somebody has any idea?Than...
by gotarr Explorer in Splunk Search 08-19-2021
0 6
0
6
haripotu
We have the count of different fields We need to get all that data on x-axis for the that we are using appendcols mor...
by haripotu Loves-to-Learn Everything in Splunk Search 08-19-2021
0 1
0
1
SamHTexas
How do I make a list of unused knowledge objects like KVstores, Data models , data sets specially the ones that are o...
by SamHTexas Builder in Splunk Search 08-18-2021
0 1
0
1
patng_nw
Below is the Bash script to change the ACL of a saved search: URL="https://splunksearch3.shatin.link:8089/servicesNS...
by patng_nw Communicator in Splunk Search 08-18-2021
1 3
1
3
Rico58
Can you combine pipe stats into a table
by Rico58 New Member in Splunk Search 08-18-2021
0 3
0
3
shakSplunk
Hi all,I have the following command which produces a table with one fixed column (Artefact) and the remaining columns...
by shakSplunk Path Finder in Splunk Search 08-18-2021
0 8
0
8
SplunkDash
Hello,I have a complex data source (sample events given below).  Is there any way I can write TIME_PREFIX and TIME_FO...
by SplunkDash Motivator in Splunk Search 08-18-2021
0 1
0
1
att35
Hi,I have the following search that works against a datamodel to plot a timechart. How can I use predict command with...
by att35 Builder in Splunk Search 08-18-2021
0 4
0
4
zacksoft_wf
My fields have values like,UTR998760071.unot.utrl.accorda.netRANWA80A8881.cnet.utrl.matrixia.netANNA00A0071.tron.utrl...
by zacksoft_wf Contributor in Splunk Search 08-18-2021
0 5
0
5
sam_
Hi,I am attempting to create a simple column chart using JSON data from a single event.The Rows{}.S03PERFC value repr...
by sam_ Engager in Splunk Search 08-17-2021
0 2
0
2
shakSplunk
Hi all,I have the following dataset:Name TitleDaysRemainingTomWest50MartinerrorerrorBilly Winter5103WillFable2 I was ...
by shakSplunk Path Finder in Splunk Search 08-17-2021
0 1
0
1
GaetanVP
Hello everyone,When I install Splunk enterprise on my personal Ubuntu machine, it directly changed the default python...
by GaetanVP Contributor in Splunk Search 08-17-2021
0 2
0
2
kthiara_imax
I have the following data of red, green, and blue light levels over time that I would like to plot on a scatter plot ...
by kthiara_imax New Member in Splunk Search 08-17-2021
0 0
0
0
munisb
Hi,I am trying to figure this out - I have a data set that I need to compare the DNS values. The index data contains ...
by munisb Explorer in Splunk Search 08-17-2021
0 2
0
2
ervinsmith
Example: a series of events all have the same incident number (1170820) outlining the lifecycle of the ticket (from o...
by ervinsmith Explorer in Splunk Search 08-17-2021
0 3
0
3
shakSplunk
Hi all,I'm trying to convert the message body of my events into fields. The structure of the event message is in a co...
by shakSplunk Path Finder in Splunk Search 08-17-2021
1 1
1
1
MarieHe
Hello,I would like to enter the info from a lookup table into my dashboard search. lookup table name: FIP.csvcontent:...
by MarieHe New Member in Splunk Search 08-17-2021
0 3
0
3
Mahipal456
Hi All,I need to extract  the fields from the below xml data tried xpath and xmlkv but not working as expected.<item>...
by Mahipal456 Loves-to-Learn Lots in Splunk Search 08-17-2021
0 17
0
17
graziaedu
I have the follow queryindex=index |spath output=traceSteps path=traceSteps{}|table traceSteps|mvexpand traceSteps|re...
by graziaedu Explorer in Splunk Search 08-17-2021
0 2
0
2
Get Updates on the Splunk Community!

ATTENTION: We’re Moving! (AGAIN!)

The Splunk Community Slack is undergoing a system migration to keep our workspace secure and ...

Deep Dive: Optimizing Telemetry Pipelines in Splunk Observability Cloud

In this session, we will peel back the layers of Splunk Observability Cloud’s cost-optimization features. ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...