Splunk Search

Splunk Search
Community Activity
RmDok
`base search | stats values(zipcode), count(zipcode) as c by country | sort -c | head 10`which gives me most appeared...
by RmDok Loves-to-Learn Lots in Splunk Search 06-04-2021
0 3
0
3
a_n
Hello,I have a dashboard with Choropleth map presenting events from various countries (categorical Color mode).In the...
by a_n Path Finder in Splunk Search 06-04-2021
0 0
0
0
junier16
im looking for the field "is_prohibited=true". This is field is located in one of lookup table, event type, or tag. H...
by junier16 Explorer in Splunk Search 06-03-2021
0 1
0
1
dojiepreji
I need to compare my timepicker values (timePicker token) to the field date_e which returns an epoch value. I conve...
by dojiepreji Path Finder in Splunk Search 06-03-2021
0 3
0
3
teco_akelly
I've got a number of files coming from directories similar to this....C:\File Transfer\Relay Files\8Series_files\WB-C...
by teco_akelly Engager in Splunk Search 06-03-2021
0 1
0
1
badari
Hello,Sorry for a newbie question, I have the following event thats generated{<!-- -->&#64;timestamp: 2021-06-03T17:39:34.720&#43;00:...
by badari Engager in Splunk Search 06-03-2021
0 3
0
3
anil1432
I need to know  more details about splunk usage for Paas/Rpaas  users.Can you define us some brief explanation please...
by anil1432 Explorer in Splunk Search 06-03-2021
0 0
0
0
abidkar
Hello,I am trying to search the splunk log but I am getting the output in payload format. is there a way I can get it...
by abidkar Loves-to-Learn Lots in Splunk Search 06-03-2021
0 17
0
17
javier_reina
Good morningIn a kv store we have 3 columns: Subcontrol, Value1 and Value2.We are trying to calculate the percentage ...
by javier_reina Explorer in Splunk Search 06-03-2021
0 0
0
0
ajees_basha
how can we change the phone number format. i used sed mod it is working fine but i want to store the formatted phone ...
by ajees_basha Explorer in Splunk Search 06-03-2021
0 10
0
10
nasha430
Hi, I use tstats, but tstats use required argument ( stats-func ).I want to write SPL.| tstats summariesonly&#61;t &lt;field...
by nasha430 Explorer in Splunk Search 06-03-2021
0 7
0
7
Kuronoa
Hello! I'll try to keep things as brief and concise as I can, but what you need to know is that I'm currently buildin...
by Kuronoa New Member in Splunk Search 06-02-2021
0 1
0
1
raidercom
I'm having an issue with dockerized splunk post 8.1.3 free. The timezone in the web interface remains as UTC. With 8....
by raidercom Communicator in Splunk Search 06-02-2021
1 1
1
1
nathanjr
We are importing structured logs stored as json lines in a text file. An example event:{ "time": "...", "template": "...
by nathanjr Engager in Splunk Search 06-02-2021
0 2
0
2
ainu77
I have an alert which tirggers on following:index&#61;xxx sourcetype&#61;xxx_cdr_event host&#61;**at** |search cause_code IN (500...
by ainu77 Loves-to-Learn Lots in Splunk Search 06-02-2021
0 0
0
0
klim
I have a query that runs completely fine in the regular search but when it is added to a dashboard in the same app it...
by klim Path Finder in Splunk Search 06-02-2021
0 0
0
0
helge
How can I add a summary row to a table in Simple XML? By summary row I am referring to what is described here, i.e. a...
by helge Builder in Splunk Search 06-02-2021
2 18
2
18
brizzoh20
Hello, i have a spike which comes from A URL being constantly blocked by proxy. I need help with a query on  finding ...
by brizzoh20 Observer in Splunk Search 06-02-2021
0 0
0
0
Nith1
Hi Teami want to display the success and failure count for that i have only one field i.eb_failed&#61;"false"using this i...
by Nith1 Path Finder in Splunk Search 06-02-2021
0 2
0
2
kig121
Hi, i am a beginner.I have 2 sourcetype (table). One of conatins requirement_id other ones conatins Testcase_id and r...
by kig121 Loves-to-Learn Lots in Splunk Search 06-02-2021
0 2
0
2
denissotoacc
I have a report that is getting events from an existing index, processing the data and indexing again to another cust...
by denissotoacc Path Finder in Splunk Search 06-02-2021
0 3
0
3
DanielSp
I have a index with the follow data:KEY_ID, GROUP, DATEWith for example:1, group1, 2021-06-011, group2, 2021-06-022, ...
by DanielSp Explorer in Splunk Search 06-02-2021
0 2
0
2
renuka
Hello "Good Day"I am trying to add the extra column for totals. If you observe above picture, I have four counts  of ...
by renuka Path Finder in Splunk Search 06-02-2021
0 5
0
5
akankshayadav
i have a table with multiple values, and on click of any of the value, an inline panel opens (using depends option) v...
by akankshayadav Path Finder in Splunk Search 06-02-2021
0 7
0
7
john_glasscock
Does anyone know of a rest call that can be used to kill all adhoc queries for a user?  I do not wish to all users se...
by john_glasscock Path Finder in Splunk Search 06-01-2021
0 1
0
1
Get Updates on the Splunk Community!

The OpenTelemetry Certified Associate (OTCA) Exam

What’s this OTCA exam? The Linux Foundation offers the OpenTelemetry Certified Associate (OTCA) credential to ...

From Manual to Agentic: Level Up Your SOC at Cisco Live

Welcome to the Era of the Agentic SOC   Are you tired of being a manual alert responder? The security ...

Splunk Classroom Chronicles: Training Tales and Testimonials (Episode 4)

Welcome back to Splunk Classroom Chronicles, our ongoing series where we shine a light on what really happens ...