Splunk Search

Splunk Search
Community Activity
rrovers
I use timechart to count the events per month by department| timechart span=1mon count AS Aantal by departmentafter t...
by rrovers Contributor in Splunk Search 06-21-2021
0 4
0
4
sphiwee
How can I get STP as a bar chart ? im getting error when i try to do it like this  i want to display STP for each mon...
by sphiwee Contributor in Splunk Search 06-21-2021
0 4
0
4
wilcomply13
I've been troubleshooting an issue with a search time field extractions of a JSON field being truncated at 4096 chara...
by wilcomply13 Explorer in Splunk Search 06-21-2021
0 0
0
0
rberman
Is it possible to use the value derived from one search and pass it to another search? For example, I have a search a...
by rberman Path Finder in Splunk Search 06-21-2021
0 4
0
4
abby_xr
Based on my dataset, I have 10 items in total and I wanna generate a new field randomly for each different item. E.g....
by abby_xr Splunk Employee Splunk Employee in Splunk Search 06-21-2021
0 0
0
0
trojan_81
Can someone help me break down this portion of a search? Is it saying, look for anything older than 30 minutes? eval ...
by trojan_81 Path Finder in Splunk Search 06-21-2021
0 1
0
1
dilenthakuri
Hi Guys,I am just wondering if anyone can put me in the right direction - I have a question about search queries in S...
by dilenthakuri Explorer in Splunk Search 06-21-2021
0 5
0
5
sasankganta
I'm searching for list of indexes using|tstats count where index=* sourcetype=log4j  by index sourcetypeI got results...
by sasankganta Path Finder in Splunk Search 06-21-2021
0 1
0
1
middlemiddle
I need to create a field "search_hours" with values for every hour in (%H:00) format within the search window, whethe...
by middlemiddle Explorer in Splunk Search 06-21-2021
0 0
0
0
sphiwee
 index="acoe_np_spa_metrics" | search Project="*" AND Volume="*" | timechart span=1mon count(eval(D_Status="F")) as ...
by sphiwee Contributor in Splunk Search 06-21-2021
0 1
0
1
athorat
I need to get the list of Sourcetypes by Index in a Dashboard. I got this search from Splunk forums which gives the ...
by athorat Communicator in Splunk Search 06-21-2021
0 6
0
6
jason_hotchkiss
Hello - we are trying to calculate the possible_duration between the first event and last event in the following base...
by jason_hotchkiss Communicator in Splunk Search 06-21-2021
0 4
0
4
Learnersplunk21
Hi AllBelow is my query to tabulate a few fields together and count them on basis of its value .I need help with a si...
by Learnersplunk21 Engager in Splunk Search 06-21-2021
0 0
0
0
sasankganta
Index=A sourcetype=B and I can see under fields category filed "C" with count of 10k+ values ..But if I search with  ...
by sasankganta Path Finder in Splunk Search 06-21-2021
0 6
0
6
ky129q
We have a daily report that generates an event each time an IP is accessed each day.  In order to determine the numbe...
by ky129q Engager in Splunk Search 06-21-2021
0 2
0
2
ebs
I am able to print the results of the query with the Splunk Python SDK, is there also a function within it that tells...
by ebs Communicator in Splunk Search 06-20-2021
0 0
0
0
ebs
Hi.We're running a search through a user role we created specifically for querying through the Splunk API. The search...
by ebs Communicator in Splunk Search 06-20-2021
0 0
0
0
yuanliu
I have a lookup that can return multivalue for two fields, one of them a timestamp, like thiskeytextdatekey1abc|def20...
by SplunkTrust SplunkTrust in Splunk Search 06-20-2021
0 10
0
10
indeed_2000
HiI install forwarder on a server.it work perfectly and forward anything on this path /data/app/log to splunk server,...
by indeed_2000 Motivator in Splunk Search 06-20-2021
0 2
0
2
moayadalghamdi
Hello Splunkers in my firewall logs, i have three numerical fields, (out_packet, in_packet, bytes) i want to sum thes...
by moayadalghamdi Path Finder in Splunk Search 06-20-2021
0 6
0
6
xisura
Hi Newbie here, Im exploring right now the map on splunk 6, Now my question is,is it possible to add a rangemap in g...
by xisura Communicator in Splunk Search 06-19-2021
0 9
0
9
vschrodda
 With a search I would like a result that does NOT match an element in a listFor instance:   index=myindex source="my...
by vschrodda Explorer in Splunk Search 06-18-2021
0 5
0
5
token1
I've seen the TA Unified2 do this, one single line of regex pulling all relevant fields from snort logs.  I'm wanting...
by token1 Explorer in Splunk Search 06-18-2021
0 1
0
1
actionabledata
How do I search for all apps and dashboards on a server and yield a table with author, app name, description, actual ...
by actionabledata Path Finder in Splunk Search 06-18-2021
0 2
0
2
LionelHutz
Hello Hello,Trying to make this search work:| tstats allow_old_summaries=true dc(Malware_Attacks.signature) as "infec...
by LionelHutz Engager in Splunk Search 06-18-2021
0 1
0
1
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...