Splunk Search

Splunk Search
Community Activity
anil1432
Good morning. I added new PRD Splunk forwarders and sourcetypes last Wednesday night, June 9. I can see the events in...
by anil1432 Explorer in Splunk Search 06-13-2021
0 1
0
1
anil1432
I have one file  which is monitoring from 1 year in deployment server in inputs my file name is   sourcetype: D:\Appl...
by anil1432 Explorer in Splunk Search 06-13-2021
0 2
0
2
anil1432
Hii everyone, Please can any one do splunk query optimization.Phenomenon we are facingThe report count looks incorrec...
by anil1432 Explorer in Splunk Search 06-13-2021
0 2
0
2
BernardEAI
I'm trying to accurately control the lifetime of the search artifacts of a saved search. I have set the "Expiry" time...
by BernardEAI Communicator in Splunk Search 06-12-2021
0 2
0
2
SamHTexas
Is there an SPL search for Searches (saved or scheduled) that run in Real time? Should the all scheduled or saved sea...
by SamHTexas Builder in Splunk Search 06-12-2021
0 6
0
6
picktheneedle
Can someone help me with the query to plot average time between events matching a field having certain value e.g msg=...
by picktheneedle Loves-to-Learn in Splunk Search 06-12-2021
0 1
0
1
Jazzyb
I have some numeric values that is coming from job search results and the result is saved in tokens. These values are...
by Jazzyb New Member in Splunk Search 06-12-2021
0 2
0
2
yuanliu
I have some data containing timestamps with varied formats, e.g., sometimes "%m/%d/%y %H:%M", sometimes use "%m/%d/%Y...
by SplunkTrust SplunkTrust in Splunk Search 06-12-2021
0 3
0
3
alexspunkshell
If the user's AD & Logon locations are the same, then I am filtering the results with the below query. | rex field=Lo...
by alexspunkshell Contributor in Splunk Search 06-12-2021
0 6
0
6
a212830
Hi, Is there a way to use the tstats command to list the number of unique hosts that report into Splunk over time? ...
by a212830 Champion in Splunk Search 06-12-2021
0 3
0
3
ChihiroK
I'm trying to get the total number of hours a user is connected to a workspace per month.  I am getting the raw data ...
by ChihiroK New Member in Splunk Search 06-12-2021
0 2
0
2
yuanliu
To groupby?  Or not to groupby?  That is the question. (Not really.  The question arises because trellis splitby seem...
by SplunkTrust SplunkTrust in Splunk Search 06-11-2021
0 1
0
1
Traer001
Hello,This may be an easy one, but I've been struggling with finding an answer for it.I have events that look like th...
by Traer001 Path Finder in Splunk Search 06-11-2021
1 2
1
2
aayushshah
I calculate the mean of the four weeks using the aliases, but how do I calculate the standard deviation of the four p...
by aayushshah Engager in Splunk Search 06-11-2021
0 4
0
4
kcull997
Using Python in Jupyter notebooks to run Splunk API. The queries run fine from both Python and Splunk itself. However...
by kcull997 Observer in Splunk Search 06-11-2021
0 0
0
0
jcarlock
Just started getting data flowing from a new machine that produces data which is similar in content, but different in...
by jcarlock Explorer in Splunk Search 06-11-2021
0 2
0
2
vrmandadi
I am trying to get the top 10 users based on GB used in a timechart graph visualization and  also the the total GB us...
by vrmandadi Builder in Splunk Search 06-11-2021
0 0
0
0
vrmandadi
I have an index which gives user information of how much GB of data they used and from what source .I would like to g...
by vrmandadi Builder in Splunk Search 06-11-2021
0 5
0
5
alexspunkshell
In my search results, I have multiple results for "Alert" & "UPN"I want to only include "Alert=Anonymous IP address" ...
by alexspunkshell Contributor in Splunk Search 06-11-2021
0 1
0
1
anomalyfinder
Hi,I try to find out a way to search for login events(bruteforce)were the user comes from one IP address and tries mu...
by anomalyfinder Engager in Splunk Search 06-11-2021
0 2
0
2
thaghost99
hi me again. need help.this search string works perfectly fine when doing search int he guithis search works fine in ...
by thaghost99 Path Finder in Splunk Search 06-11-2021
0 7
0
7
anil1432
Hi All,How can I delete my logs permanently Request to delete old Splunk logs for EMS and Truvue webservices that are...
by anil1432 Explorer in Splunk Search 06-11-2021
0 3
0
3
Nith1
Hi Teami have a field agentId where i can find my data that is required data(i.e)cname=abc ,cname=xyz and so on ,whil...
by Nith1 Path Finder in Splunk Search 06-11-2021
0 2
0
2
Dmitriy
Hi, please help to make search by date in inputlookup "es_notable_events". I thried to search by "earliest" its not w...
by Dmitriy Explorer in Splunk Search 06-11-2021
0 3
0
3
splunkhu123
 My splunk HEC server disconnecting  the HEC connections from the clients when clients trying to send the log over HE...
by splunkhu123 Loves-to-Learn in Splunk Search 06-10-2021
0 0
0
0
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Solution Authors