Splunk Search

Splunk Search
Community Activity
xyz123
Hello, I have a macro that calls other macros in order to have a simple view of the code search.The thing is that whe...
by xyz123 Explorer in Splunk Search 04-30-2021
0 0
0
0
manvi_spl8
I want to filter out transactions(where status ="InProgress ") that started in the previous slot and those completed ...
by manvi_spl8 New Member in Splunk Search 04-30-2021
0 3
0
3
parthmadane
Hello all, I have been struggling for a while now to create a query for comparing the events using two different valu...
by parthmadane Explorer in Splunk Search 04-30-2021
0 6
0
6
mrhodes93
I've got logs that contain a timestamp in 24 hour YYYY-MM-DD HH:MM:ss:SSS format (example: 2021-04-29 18:43:07.557). ...
by mrhodes93 Explorer in Splunk Search 04-30-2021
0 1
0
1
JuanAntunes
Hi Team How are u?I have a little questionI have a index with same informations,   index="epo" source="endpoint"  In ...
by JuanAntunes Explorer in Splunk Search 04-30-2021
0 3
0
3
splunkrocks2014
Hi. I tried to send an email for each event when triggered. I used map and sendemail commands, but there is an emp...
by splunkrocks2014 Communicator in Splunk Search 04-29-2021
0 7
0
7
aallred
Recently upgraded from 7.2.3 to 8.0 and a previously configured scheduled alert is not longer sending emails correctl...
by aallred Engager in Splunk Search 04-29-2021
1 6
1
6
Traer001
Hello,I have events that look like this (for a user with id 123):2021-04-29 14:30:45 Notification Received [User Id:1...
by Traer001 Path Finder in Splunk Search 04-29-2021
0 2
0
2
alexspunkshell
Hi,Can someone help me with the regex command for below?| search ="UPN=*T@mail.cloud"Thanks in advance! 
by alexspunkshell Contributor in Splunk Search 04-29-2021
0 3
0
3
Glasses
Hi, Here are my searchesindex=foo <search criteria> | table user _timeindex=bar <search criteria> | table user _timeT...
by Glasses Builder in Splunk Search 04-29-2021
0 6
0
6
NDolan
Hello Everyone, I have been working on a problem for the last few weeks and haven't had huge amounts of success and w...
by NDolan Loves-to-Learn Lots in Splunk Search 04-29-2021
0 4
0
4
me74fhfd
Hi all, I have used an app to generate a document that according to this log went succesfull. Is there a way to allow...
by me74fhfd Path Finder in Splunk Search 04-29-2021
0 1
0
1
alexspunkshell
Hi All,Below is my Splunk query.I want to only eliminate the result if "UPN" & "Event_title" both are the same for 7 ...
by alexspunkshell Contributor in Splunk Search 04-29-2021
0 7
0
7
Raymond2T
 I have a query that returns the following result. Column 1Column 2A1A2B1B2C1C2D1D2 And I would like to transform it ...
by Raymond2T Path Finder in Splunk Search 04-29-2021
0 2
0
2
jawk339
Hey all!I am tasked to do some housekeeping and find out which installed apps are being used the least so that I can ...
by jawk339 Engager in Splunk Search 04-29-2021
0 2
0
2
Paolo_Prigione
I am trying to connect to Neo4j using their JDBC driver with no luck. Has anybody done better than this?
by Paolo_Prigione Builder in Splunk Search 04-29-2021
0 7
0
7
marco_carolo
Hello there  So, I've extracted from the log, using rex, the time, called OSY_time and each individual slow query, c...
by marco_carolo Path Finder in Splunk Search 04-29-2021
0 1
0
1
johnrk
table returns duplicates for extracted Fields that are not Selected fieldsIn the following image, host is a Selected ...
by johnrk Engager in Splunk Search 04-29-2021
0 4
0
4
Dheeru
Hello,How do we schedule a CSV file as an attachment to the Email. What is the script that needs to be added in the s...
by Dheeru Engager in Splunk Search 04-29-2021
0 1
0
1
kannu
Hello team , I am having one event in which single field have multiple value like provided below: {"body":{"records":...
by kannu Communicator in Splunk Search 04-28-2021
0 3
0
3
simo
Hi all,I have a column containingRequest = REQ_IN ...... { ...... "productId": "test", ...... { ....... "productId": ...
by simo Path Finder in Splunk Search 04-28-2021
0 11
0
11
NewZealandGrom
What is the search for creating account on MAC OS?
by NewZealandGrom Loves-to-Learn Lots in Splunk Search 04-28-2021
0 0
0
0
bowesmana
I have a large NodeRED JSON flows.json file that I'm ingesting into Splunk. In that file there are one or more 'flows...
by SplunkTrust SplunkTrust in Splunk Search 04-28-2021
0 0
0
0
ankit
I am working with JSON data type events and am trying to extract the username (user1, user2) from the pathspec data s...
by ankit Explorer in Splunk Search 04-28-2021
0 3
0
3
xtinas
The data is MFA attempts in O365. I have an alert that fires whenever someone denies an MFA push. The thing is, somet...
by xtinas Engager in Splunk Search 04-28-2021
0 0
0
0
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...