Splunk Search

Splunk Search
Community Activity
brizzoh20
Hello, i have a spike which comes from A URL being constantly blocked by proxy. I need help with a query on  finding ...
by brizzoh20 Observer in Splunk Search 06-02-2021
0 0
0
0
Nith1
Hi Teami want to display the success and failure count for that i have only one field i.eb_failed="false"using this i...
by Nith1 Path Finder in Splunk Search 06-02-2021
0 2
0
2
kig121
Hi, i am a beginner.I have 2 sourcetype (table). One of conatins requirement_id other ones conatins Testcase_id and r...
by kig121 Loves-to-Learn Lots in Splunk Search 06-02-2021
0 2
0
2
denissotoacc
I have a report that is getting events from an existing index, processing the data and indexing again to another cust...
by denissotoacc Path Finder in Splunk Search 06-02-2021
0 3
0
3
DanielSp
I have a index with the follow data:KEY_ID, GROUP, DATEWith for example:1, group1, 2021-06-011, group2, 2021-06-022, ...
by DanielSp Explorer in Splunk Search 06-02-2021
0 2
0
2
renuka
Hello "Good Day"I am trying to add the extra column for totals. If you observe above picture, I have four counts  of ...
by renuka Path Finder in Splunk Search 06-02-2021
0 5
0
5
akankshayadav
i have a table with multiple values, and on click of any of the value, an inline panel opens (using depends option) v...
by akankshayadav Path Finder in Splunk Search 06-02-2021
0 7
0
7
john_glasscock
Does anyone know of a rest call that can be used to kill all adhoc queries for a user?  I do not wish to all users se...
by john_glasscock Path Finder in Splunk Search 06-01-2021
0 1
0
1
william_choo
Hi,I'm new to Splunk here...  I have a local instance of Splunk Enterprise on my local machine where I've created a d...
by william_choo Explorer in Splunk Search 06-01-2021
0 2
0
2
renuka
Hello All"Good Day"index="aedc"| rex field=source "-_(?<source>\S+)"| rex "(?<ModuleID>MY\d+)"| rex "(?<Path>/F.\s\S+...
by renuka Path Finder in Splunk Search 06-01-2021
0 0
0
0
Traer001
Hello,I am creating transactions for the earliest instance of a location being reserved and that location being relea...
by Traer001 Path Finder in Splunk Search 06-01-2021
0 8
0
8
moinyuso96
So what I have now from my search so farProduct     Status    TimeA                   Start        8.00 AMA          ...
by moinyuso96 Path Finder in Splunk Search 06-01-2021
0 2
0
2
ebs
Hi, I want my data presented in a very specific way, which means I can't go the typical route of just adding the fiel...
by ebs Communicator in Splunk Search 06-01-2021
0 4
0
4
DavidRojas
How can I do Three search in the same query, but the results separate for a week (the results of last 4 weeks), and t...
by DavidRojas Engager in Splunk Search 06-01-2021
0 2
0
2
rafadvega
Hello, I need to create a whitelist with the blacklist. I mean... I have three blacklist in the windows security i...
by rafadvega Path Finder in Splunk Search 06-01-2021
1 4
1
4
cindygibbs_08
Hello guys I hope you are all having a great weekI work in a hotel chain and we provide transportation services, but ...
by cindygibbs_08 Communicator in Splunk Search 06-01-2021
0 2
0
2
corti77
I would like to create a dashboard to query the logs of our two firewall devices (paloalto and sns). Both has their o...
by corti77 Contributor in Splunk Search 06-01-2021
0 3
0
3
wanderson8
I am trying to use a lookup table to perform a series of string replacements on a single field in a search resultThe ...
by wanderson8 Engager in Splunk Search 06-01-2021
0 4
0
4
sankum3920
Hi,Can some body help me with a query or basic search WRT Proofpoint as source to identify spoofed emails 
by sankum3920 New Member in Splunk Search 06-01-2021
0 0
0
0
g_paternicola
Hi everyone, I have a table which gives me 2 fields Username and Duration. How can I dedup the Username and add the t...
by g_paternicola Path Finder in Splunk Search 06-01-2021
0 3
0
3
tarunmalhotra79
Dear Splunker,I have a lookup, which contains all the regex patterns. I would like to identify which of them are malf...
by tarunmalhotra79 Engager in Splunk Search 06-01-2021
0 5
0
5
advidlan
Hi I am trying to extract field from the user agent details like ( Operating system, Software, Software version, Soft...
by advidlan Loves-to-Learn in Splunk Search 05-31-2021
0 2
0
2
ebs
Hi,I want to do a fillnull on an eval created field post stats but it never works quite right with either creating th...
by ebs Communicator in Splunk Search 05-31-2021
0 1
0
1
ebs
I've performed a stats by command I was wondering if there was a way to store all these as fields and then for the by...
by ebs Communicator in Splunk Search 05-31-2021
0 5
0
5
hartfoml
I have this event: <f:Table><f:Row><f:Cell>IE Group Policy</f:Cell></f:Row><f:Row><f:Cell>HKEY_LOCAL_MACHINE\SOFTWAR...
by hartfoml Motivator in Splunk Search 05-31-2021
0 4
0
4
Get Updates on the Splunk Community!

Quantify Your Splunk Investment Impact: Introducing Savings Metrics to Value Insights

Building on the foundation established in our initial Value Insights releases, we are introducing the Savings ...

Event Series: Telemetry Pipeline Management

Balancing Scale and Spend: Gaining Control Over High-Volume Metrics in Splunk Observability Cloud As ...

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...
Top Solution Authors