Splunk Search

Splunk Search
Community Activity
vinod743374
This is my _raw data consists06/24/2021 17:26:17 +0530, info_search_time=1624535777.471, Dns Rule=Passed, HOSTNAME=Pa...
by vinod743374 Communicator in Splunk Search 06-27-2021
0 8
0
8
sudhakar_mnsr
How to plot http error % as timeseries? (when I add _time or timeseries count Iam getting DAG: Execution exception (s...
by sudhakar_mnsr New Member in Splunk Search 06-27-2021
0 4
0
4
pankajad
There are 100s  of APIs in my application. I'm logging exception for an API. I can get stats to get total no of excep...
by pankajad Explorer in Splunk Search 06-27-2021
0 3
0
3
tchankapi
I am trying to find matches for field b, when there is a partial match in field a. I have field a which is an importe...
by tchankapi Engager in Splunk Search 06-26-2021
0 1
0
1
evelenke
Hi Splunkers, I was stuck with cutting the part of string for drilldown value from a chart using the <eval token>. S...
by evelenke Contributor in Splunk Search 06-26-2021
0 3
0
3
gliptak
Running| makeresults | eval s="foo\nbar" displaysfoo\nbarand it is unclear if the variable has a newline or just cont...
by gliptak Explorer in Splunk Search 06-26-2021
0 4
0
4
IcyPenguin
Hello everyone,I am new to Splunk and learning the ropes. I am stuck on a query I am trying setup. I have SNMP data c...
by IcyPenguin Loves-to-Learn Lots in Splunk Search 06-25-2021
0 0
0
0
Sentira
Hi,I've written a query query below which joins 2 different event types from same source with different filters.sourc...
by Sentira Explorer in Splunk Search 06-25-2021
0 8
0
8
yvassilyeva
Hi,I have a column chart with multiple overlaying fields (see blue orange and yellow lines below). Right now i am dis...
by yvassilyeva Path Finder in Splunk Search 06-25-2021
0 0
0
0
kirrusk
I have a CSV file with the below data, trying to push to Splunk.Example - Thu JUN 24  15:27:52 +08 2021,name1,address...
by kirrusk Communicator in Splunk Search 06-25-2021
0 1
0
1
FyazIkram834
So currently  i have:|Name                     | Branch                    | Age-------------------------------------...
by FyazIkram834 Engager in Splunk Search 06-25-2021
0 6
0
6
pagnihot
Is there a way to monitor the searches for some specific fields?Let's say I wish to monitor if anyone is running any ...
by pagnihot Path Finder in Splunk Search 06-25-2021
0 2
0
2
ookamidono
I am encountering problems joining 2 querries that are getting values from 2 different sourcetypes.I would like to ge...
by ookamidono Explorer in Splunk Search 06-25-2021
0 3
0
3
a_n
Hello,I am ingesting  files containing host and ports for each host.For each Source (FILE) The Nodes(host) and ports ...
by a_n Path Finder in Splunk Search 06-25-2021
0 2
0
2
bhavinsatwani65
I want to get error logs counts from windows event logs from multiple servers.Want to create a separate dashboard whe...
by bhavinsatwani65 New Member in Splunk Search 06-25-2021
0 5
0
5
hvdtol
Hello,I have a directory structure which i want split up in separate events.For example\MAIN\SUB1\SUB2\SUB3\file.xlsx...
by hvdtol Path Finder in Splunk Search 06-25-2021
0 4
0
4
Tejesh
Kindly help me out with Query to find top 10 indexers w.r.t index max allocated storage.
by Tejesh Observer in Splunk Search 06-25-2021
0 0
0
0
nasha430
Hi.I have one problem. It is truncated subsearch result.   index="test-index01" sourcetype="test_sourcetype" user="*"...
by nasha430 Explorer in Splunk Search 06-25-2021
0 1
0
1
ashriram
Hi I have the data that looks like thisuser, ip, (metrics kv pairs)---- sample results for search -- user=user1,ip=10...
by ashriram Engager in Splunk Search 06-25-2021
0 4
0
4
franks59
All my dashboards panels, written in Simple XML, default to Search Mode "Fast" when the "Open In Search" icon is sele...
by franks59 Explorer in Splunk Search 06-24-2021
1 4
1
4
kirrusk
Hi All,I have a CSV file with the below data, trying to push to splunk. Example - Thu JUN 24  15:27:52 +08 2021,name1...
by kirrusk Communicator in Splunk Search 06-24-2021
0 2
0
2
yshen
I want to compute the change in temperature for each location in a given interval, say, 15 minutes, or 30 minutes. I ...
by yshen Communicator in Splunk Search 06-24-2021
0 0
0
0
Razziq
Hello,Hoping someone can help with a Field Extraction question regarding multi line text and capturing a specific val...
by Razziq Explorer in Splunk Search 06-24-2021
0 2
0
2
Traer001
Hello,Does anyone know how to pass parameters to a saved search using the splunklib for the Splunk API?I am able to u...
by Traer001 Path Finder in Splunk Search 06-24-2021
0 0
0
0
apichai32356
I want to extract count from list (picture 1 ) to table (picture 2) How do  I  do?    |stats count by Name,severity ...
by apichai32356 Explorer in Splunk Search 06-24-2021
0 4
0
4
Get Updates on the Splunk Community!

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...