Splunk Search

Splunk Search
Community Activity
joe06031990
Hello,I am trying to get the Perc99 and Perc95 from the total transaction in IIS which the bellow search: source="C:\...
by joe06031990 Communicator in Splunk Search 07-15-2021
0 3
0
3
joe06031990
Good morning,I am looking on generating a search to find the 1% slowest requests from IIS logs however I am not sure ...
by joe06031990 Communicator in Splunk Search 07-15-2021
0 0
0
0
dipocket_org
Every time I search, I get errors:Could not load lookup=LOOKUP-cisco_asa_change_analysisCould not load lookup=LOOKUP-...
by dipocket_org Engager in Splunk Search 07-15-2021
0 2
0
2
indeed_2000
HiHere is my log, what is the rex for extract "0000A0@#0000" and "mymodulename" 2021-07-14 23:59:05,185 INFO [APP] Us...
by indeed_2000 Motivator in Splunk Search 07-15-2021
0 8
0
8
benton
If I run this search I generate two numeric fields, one called number the other called decimal  | makeresults 1 | eva...
by benton Path Finder in Splunk Search 07-15-2021
0 7
0
7
indeed_2000
Hihere is my log:2020-01-19 13:20:15,093 INFO ABC.InEE-Product-00000 [MyProcessor] Detail Packet: M[000] T[111] P[0A0...
by indeed_2000 Motivator in Splunk Search 07-15-2021
0 2
0
2
SplunkDash
Hello,Please let me know how I would write Props Configuration file for this csv file. Segment of sample data for thi...
by SplunkDash Motivator in Splunk Search 07-15-2021
0 5
0
5
msyparker
Hello!I  have a search with timechart that I need to filter time AFTER the timechart based on the current time. I've ...
by msyparker Explorer in Splunk Search 07-15-2021
0 2
0
2
SamHTexas
How do I search for a complete list of all the Apps on my Deployment server ? If possible Excluding the Built In apps...
by SamHTexas Builder in Splunk Search 07-15-2021
0 1
0
1
mybestfriendbob
I have a user that is asking me to look at the file hashes of every file that some into splunk across today and yeste...
by mybestfriendbob Explorer in Splunk Search 07-15-2021
0 2
0
2
henricook
I've got a JSON event that I like to tabulate by using `index=myindex | table *`When I do this though it includes som...
by henricook New Member in Splunk Search 07-15-2021
0 1
0
1
EdwinOssa
This is my sentence but is not completed. I can't find the solution on Doc. index=main sourcetype=acc* action=view [s...
by EdwinOssa Engager in Splunk Search 07-15-2021
0 3
0
3
Mick26
I've been trying to join the results of a search with a dataset on one line. I can get it to work with two lines, but...
by Mick26 Engager in Splunk Search 07-15-2021
0 2
0
2
ashwinhs
Is there a way to assign workload pools to certain roles? Like say - we have 2 types of users. TypeA and TypeB users....
by ashwinhs New Member in Splunk Search 07-15-2021
0 1
0
1
splunkDevendra
 I want to find out How many times string appeared in ONE SINGLE EVENT.and group all the events and find table like :...
by splunkDevendra Explorer in Splunk Search 07-15-2021
0 6
0
6
Digvijay
Digvijay_0-1626335823022.png Current query :index=salcus sourcetype= ticket_mgmt_rest source= http:ticket_mgmt_rest |...
by Digvijay Path Finder in Splunk Search 07-15-2021
0 2
0
2
splunkDevendra
I've JSON Object in msg field as :"objectA":{<!-- -->"aggrStatus":"SUCCESS","attempts":[{<!-- -->"aggrStatus":"FAILURE","responses":[...
by splunkDevendra Explorer in Splunk Search 07-15-2021
0 2
0
2
a_n
Hi,I have Splunk on Windows network, and using UF for windows events.I am searching to detect users logon during spec...
by a_n Path Finder in Splunk Search 07-15-2021
0 6
0
6
splunkerer
I have two indexes including command line arguments, one has field name arg, the other one has field name command, wh...
by splunkerer Path Finder in Splunk Search 07-14-2021
0 3
0
3
oleg106
Hello,I am trying to rename some fields pre-index using props.conf and it's not working.  Props below.[onelogin:event...
by oleg106 Explorer in Splunk Search 07-14-2021
0 2
0
2
tkerr1357
Hi All,I am looking for a little help with a search today. I am looking to create an alert based on this search that ...
by tkerr1357 Path Finder in Splunk Search 07-14-2021
0 2
0
2
Digvijay
Digvijay_0-1626275917579.pngIn the above attachment , I created graph which shows hourly maximum response time with r...
by Digvijay Path Finder in Splunk Search 07-14-2021
0 1
0
1
indeed_2000
Hihave log like below:_time                                                source cpu_load_percent process pctCPU cpu...
by indeed_2000 Motivator in Splunk Search 07-14-2021
0 2
0
2
Tim00
Would like to automatically send an email to all email addresses which are the output of a search. My problem is that...
by Tim00 Explorer in Splunk Search 07-14-2021
0 0
0
0
MadocHuang
Hi community,I can get 2126 events in the past 7 days with the following statement.index&#61;* "*Error Sending SMS : org....
by MadocHuang New Member in Splunk Search 07-14-2021
0 1
0
1
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI &#43; Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...
Top Solution Authors