Splunk Search

Splunk Search
Community Activity
harry_123
Hello, I have alerts that look like belowMay 13 17:15:30 11.2.3.22 0000017768: NOXXXXXX10A: May 13 2021 17:15:30.467 ...
by harry_123 Loves-to-Learn Lots in Splunk Search 06-04-2021
0 13
0
13
vijaykuma
  index=_internal host="ip" source=*license_usage.log* type="Usage"     [| inputlookup all_cs_indexes.csv     | renam...
by vijaykuma New Member in Splunk Search 06-04-2021
0 1
0
1
splunkerer
Hello,I am creating a dashboard, no matter which input can be used, but need is to paste multiple input into dashboar...
by splunkerer Path Finder in Splunk Search 06-04-2021
0 6
0
6
shrogers
Can I please get some assistance on the below?I'm trying to add a filter TRAN_CLASS!=6 to the below query. When I add...
by shrogers Loves-to-Learn Everything in Splunk Search 06-04-2021
0 4
0
4
vijaykuma
We have requirement to Integrate Oracle Unified Directory(Authentication and OS logs) with splunk. Action points: Pre...
by vijaykuma New Member in Splunk Search 06-04-2021
0 0
0
0
ivana27
Hello Splunkers,please help.I have two types of search result and i want to make alert only when 1.) occured:1.) 2021...
by ivana27 Path Finder in Splunk Search 06-04-2021
0 1
0
1
renuka
Hello All"Good Day"index="aedc"| rex field=source "-_(?<source>\S+)"| rex "(?<ModuleID>MY\d+)"| rex "(?<Path>/F.\s\S+...
by renuka Path Finder in Splunk Search 06-04-2021
0 3
0
3
Atif
Hi,I'am sending some events each minute to Splunk : TIMEIDINOUT08:00A1008:00B00    08:01A2108:01B2208:01C40    08:02A...
by Atif Explorer in Splunk Search 06-04-2021
0 3
0
3
RmDok
`base search | stats values(zipcode), count(zipcode) as c by country | sort -c | head 10`which gives me most appeared...
by RmDok Loves-to-Learn Lots in Splunk Search 06-04-2021
0 3
0
3
a_n
Hello,I have a dashboard with Choropleth map presenting events from various countries (categorical Color mode).In the...
by a_n Path Finder in Splunk Search 06-04-2021
0 0
0
0
junier16
im looking for the field "is_prohibited=true". This is field is located in one of lookup table, event type, or tag. H...
by junier16 Explorer in Splunk Search 06-03-2021
0 1
0
1
dojiepreji
I need to compare my timepicker values (timePicker token) to the field date_e which returns an epoch value. I conve...
by dojiepreji Path Finder in Splunk Search 06-03-2021
0 3
0
3
teco_akelly
I've got a number of files coming from directories similar to this....C:\File Transfer\Relay Files\8Series_files\WB-C...
by teco_akelly Engager in Splunk Search 06-03-2021
0 1
0
1
badari
Hello,Sorry for a newbie question, I have the following event thats generated{<!-- -->&#64;timestamp: 2021-06-03T17:39:34.720&#43;00:...
by badari Engager in Splunk Search 06-03-2021
0 3
0
3
anil1432
I need to know  more details about splunk usage for Paas/Rpaas  users.Can you define us some brief explanation please...
by anil1432 Explorer in Splunk Search 06-03-2021
0 0
0
0
abidkar
Hello,I am trying to search the splunk log but I am getting the output in payload format. is there a way I can get it...
by abidkar Loves-to-Learn Lots in Splunk Search 06-03-2021
0 17
0
17
javier_reina
Good morningIn a kv store we have 3 columns: Subcontrol, Value1 and Value2.We are trying to calculate the percentage ...
by javier_reina Explorer in Splunk Search 06-03-2021
0 0
0
0
ajees_basha
how can we change the phone number format. i used sed mod it is working fine but i want to store the formatted phone ...
by ajees_basha Explorer in Splunk Search 06-03-2021
0 10
0
10
nasha430
Hi, I use tstats, but tstats use required argument ( stats-func ).I want to write SPL.| tstats summariesonly&#61;t &lt;field...
by nasha430 Explorer in Splunk Search 06-03-2021
0 7
0
7
Kuronoa
Hello! I'll try to keep things as brief and concise as I can, but what you need to know is that I'm currently buildin...
by Kuronoa New Member in Splunk Search 06-02-2021
0 1
0
1
raidercom
I'm having an issue with dockerized splunk post 8.1.3 free. The timezone in the web interface remains as UTC. With 8....
by raidercom Communicator in Splunk Search 06-02-2021
1 1
1
1
nathanjr
We are importing structured logs stored as json lines in a text file. An example event:{ "time": "...", "template": "...
by nathanjr Engager in Splunk Search 06-02-2021
0 2
0
2
ainu77
I have an alert which tirggers on following:index&#61;xxx sourcetype&#61;xxx_cdr_event host&#61;**at** |search cause_code IN (500...
by ainu77 Loves-to-Learn Lots in Splunk Search 06-02-2021
0 0
0
0
klim
I have a query that runs completely fine in the regular search but when it is added to a dashboard in the same app it...
by klim Path Finder in Splunk Search 06-02-2021
0 0
0
0
helge
How can I add a summary row to a table in Simple XML? By summary row I am referring to what is described here, i.e. a...
by helge Builder in Splunk Search 06-02-2021
2 18
2
18
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Data Management Digest – November 2025

  Welcome to the inaugural edition of Data Management Digest! As your trusted partner in data innovation, the ...

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...