Splunk Search

Splunk Search
Community Activity
alexeysharkov
Hello im newbie with Splunk searchCan you please help meI have HF request which return:-AAA  datetime_of_change-BBB d...
by alexeysharkov Path Finder in Splunk Search 06-18-2021
0 9
0
9
rbal_splunk
After Smartstore was enabled for deployment the indexer's log's are flooded with messages like"INFO CacheManagerHandl...
by rbal_splunk Splunk Employee Splunk Employee in Splunk Search 06-18-2021
0 2
0
2
moinyuso96
After using transactions my "raw" field looks something like this. I want to limit the amount of rows captured  by tr...
by moinyuso96 Path Finder in Splunk Search 06-17-2021
0 1
0
1
kashnburn
I'm trying to use SEDCMD to remove some text from a logfile. example data below, data to be removed in bold. Tried so...
by kashnburn Engager in Splunk Search 06-17-2021
0 1
0
1
munisb
Hi,I have two csv files where I am trying to cidrmatch between ip and subnet - but it doesn't appear to be workingtes...
by munisb Explorer in Splunk Search 06-17-2021
0 4
0
4
KongJian
the Scenario like this: I want to pick up 5% minimum  value from thousands of data, Example:1,2,3 ,4 5,6,7,8,9,10   I...
by KongJian Engager in Splunk Search 06-17-2021
0 3
0
3
gdavid
is there a way to alert when json data changes? i want to track changes for a variety of apis results/output that sho...
by gdavid Path Finder in Splunk Search 06-17-2021
0 1
0
1
karthik_y
Hello,I am having values of a particular application as below.Looking to get the maximum version value or sorting the...
by karthik_y Engager in Splunk Search 06-17-2021
1 4
1
4
iamuser
What search criteria should I include to only get these logs?D:\Applications\Windows.App.0001\app1\logs\log-06-17-202...
by iamuser Engager in Splunk Search 06-17-2021
0 2
0
2
msage
A bit ago I submitted a question regarding how to get the average alarms per reader. So for example we have 100 alarm...
by msage Path Finder in Splunk Search 06-17-2021
0 2
0
2
Traer001
Hello,I have a search that is joining two searches (one for cart details and one for items that have been brought to ...
by Traer001 Path Finder in Splunk Search 06-17-2021
0 2
0
2
Bettynet
Hi,I would like to have a dashboard panel with just a number, which should be the substraction of two values obtained...
by Bettynet Engager in Splunk Search 06-17-2021
0 5
0
5
kashnburn
I'm fairly new to splunk so please bare with me. I have a logfile that has multiple lines of data. However when I do ...
by kashnburn Engager in Splunk Search 06-17-2021
0 2
0
2
aquinojason
Hi,I am making a report that needs to identify how long long since a user launch an application. Can I use splunk to ...
by aquinojason Path Finder in Splunk Search 06-17-2021
0 2
0
2
dauren_akilbeko
I'm working with Windows events, and want to make following report/search:process1                                   ...
by dauren_akilbeko Communicator in Splunk Search 06-17-2021
0 3
0
3
codewarrior
Hi folks, my dataset looks like this:timestampiduserMailreasont1id1a@example.comtestt2id1a@example.comtestt3id1a@exam...
by codewarrior Loves-to-Learn Everything in Splunk Search 06-17-2021
0 3
0
3
darshan
I am storing a certain dataset in summary index which has some events with fields where the values are '=' or '=='. W...
by darshan Observer in Splunk Search 06-17-2021
0 0
0
0
martaBenedetti
Hi community,starting form a custom commands that returns a list of hostnames, I have the need to filter out:platform...
by martaBenedetti Path Finder in Splunk Search 06-17-2021
0 2
0
2
richnavis
I'm would like to construct a search of our phone logs that provides a report indicating when a person calls someone ...
by richnavis Contributor in Splunk Search 06-16-2021
0 1
0
1
anurag1005
Hi, I have a query that returns  Location(Location number, Lattitude, Longitude) and I have calculated the number of ...
by anurag1005 Loves-to-Learn Everything in Splunk Search 06-16-2021
0 1
0
1
moinyuso96
I used transaction to combine 2 rows of raw fields:raw4015_ABCD, Start, 8/11/2020 5:37:10 PM, 123454015_ABCD, Complet...
by moinyuso96 Path Finder in Splunk Search 06-16-2021
0 2
0
2
jonzatlmi
| metasearch index="l-hhvm" OR index="l-nginx" | timechart count as event span=1month by index | eventstats max(event...
by jonzatlmi Explorer in Splunk Search 06-16-2021
0 1
0
1
ebs
Is there a way, besides fillnull, to do an eval if(averageResponse=0, 0.000)?Basically, I want to be able to have the...
by ebs Communicator in Splunk Search 06-16-2021
0 9
0
9
actionabledata
My objective is to increment ReplicaCount if the previous event's field value matches the current event's field value...
by actionabledata Path Finder in Splunk Search 06-16-2021
0 3
0
3
Funderburg78
Upon reading: https://docs.splunk.com/Documentation/Splunk/latest/Data/Configureeventlinebreaking#Configure_event_lin...
by Funderburg78 Path Finder in Splunk Search 06-16-2021
0 0
0
0
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...
Top Solution Authors