Splunk Search

Splunk Search
Community Activity
RedHonda03
We have data which is not being indexed that needs to be searched. I've been told by our Splunk admin team that the d...
by RedHonda03 Explorer in Splunk Search 06-29-2021
0 3
0
3
sarwshai
Hi There,How do i Exclude Source IP and Destination IP from results if they belong to same private ip range? For e.g....
by sarwshai Communicator in Splunk Search 06-29-2021
0 6
0
6
SabariRajanT
Hi Team,I have a dashboard where existing results showing Event date, Event title, email id, Logon IP, Logon Location...
by SabariRajanT Path Finder in Splunk Search 06-29-2021
0 3
0
3
pjtbasu
I've created a lookup file with 2 columns like this, basically a lookup file containing list of search queries. Name ...
by pjtbasu Explorer in Splunk Search 06-29-2021
0 1
0
1
abhijeet
I would like to break "X" field into multiple field based on available value. "X" contain data in following format. F...
by abhijeet Explorer in Splunk Search 06-29-2021
0 2
0
2
indeed_2000
Hi from this log:23:52:52.758 alex appinfo: Terminating due to signal: 1 How can I extract these item with rex:user=a...
by indeed_2000 Motivator in Splunk Search 06-29-2021
0 4
0
4
Simr
Hi  Everyone,I had been using map command on a set of few tens of entries . Basically it gets Busername field and sea...
by Simr New Member in Splunk Search 06-29-2021
0 2
0
2
btshivanand
I have see below error messages in my search head cluster members .i am using 8.2v.can i get some resolution for this...
by btshivanand Path Finder in Splunk Search 06-29-2021
0 0
0
0
jansvensen
Hey everyone!Hope you are doing alright and my question is in the right place here.  For a few days, i am seeing a st...
by jansvensen Loves-to-Learn Lots in Splunk Search 06-28-2021
0 18
0
18
rahul2gupta
Hi @gcusello ,Can you please help me to design a Splunk query to show whether a particular user has been coming into ...
by rahul2gupta Path Finder in Splunk Search 06-28-2021
0 4
0
4
JP
Hi,I have the following value in a field which needs to be split into multiple fields,Classname: abc.TestAutomation.N...
by JP Explorer in Splunk Search 06-28-2021
0 2
0
2
dabroma5
Hi, I would like to count how many times "Booking failed with 1 source conflict and 1 destination conflict" message o...
by dabroma5 Explorer in Splunk Search 06-28-2021
0 3
0
3
vinod743374
This is my sample data. i need the total "passed" These are the Headers, Node Name _time, Anti-Spoofing,  Rule Banner...
by vinod743374 Communicator in Splunk Search 06-28-2021
0 11
0
11
LegalPrime
I am running following search query to obtain history of triggered alerts (time, name, severity), manually: index=_au...
by LegalPrime Path Finder in Splunk Search 06-28-2021
0 0
0
0
rilee
I have a search result like below:{ [-]   dt: 2021-06-24T22:46:40.7013297Z   flds: [ [-]     { [-]       fn: username...
by rilee Explorer in Splunk Search 06-28-2021
0 4
0
4
jerrysplunk88
trying to display two timecharts together, to make it easy to spot the time when no response received for the request...
by jerrysplunk88 Explorer in Splunk Search 06-27-2021
0 3
0
3
dyapasrikanth
I am trying to compare count of events with previous days within business hours, here is my query  index=abc | search...
by dyapasrikanth Path Finder in Splunk Search 06-27-2021
0 5
0
5
vinod743374
This is my _raw data consists06/24/2021 17:26:17 +0530, info_search_time=1624535777.471, Dns Rule=Passed, HOSTNAME=Pa...
by vinod743374 Communicator in Splunk Search 06-27-2021
0 8
0
8
sudhakar_mnsr
How to plot http error % as timeseries? (when I add _time or timeseries count Iam getting DAG: Execution exception (s...
by sudhakar_mnsr New Member in Splunk Search 06-27-2021
0 4
0
4
pankajad
There are 100s  of APIs in my application. I'm logging exception for an API. I can get stats to get total no of excep...
by pankajad Explorer in Splunk Search 06-27-2021
0 3
0
3
tchankapi
I am trying to find matches for field b, when there is a partial match in field a. I have field a which is an importe...
by tchankapi Engager in Splunk Search 06-26-2021
0 1
0
1
evelenke
Hi Splunkers, I was stuck with cutting the part of string for drilldown value from a chart using the <eval token>. S...
by evelenke Contributor in Splunk Search 06-26-2021
0 3
0
3
gliptak
Running| makeresults | eval s="foo\nbar" displaysfoo\nbarand it is unclear if the variable has a newline or just cont...
by gliptak Explorer in Splunk Search 06-26-2021
0 4
0
4
IcyPenguin
Hello everyone,I am new to Splunk and learning the ropes. I am stuck on a query I am trying setup. I have SNMP data c...
by IcyPenguin Loves-to-Learn Lots in Splunk Search 06-25-2021
0 0
0
0
Sentira
Hi,I've written a query query below which joins 2 different event types from same source with different filters.sourc...
by Sentira Explorer in Splunk Search 06-25-2021
0 8
0
8
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...