Splunk Search

Splunk Search
Community Activity
aaa2324
Hi Team,I would like to compare below 5 different columns and get one more column as a count.category code  text  cou...
by aaa2324 Explorer in Splunk Search 05-04-2021
0 3
0
3
bz
I am trying to get an alert to recognize a lookup file with a whitelist for external devices.  Some devices I don't c...
by bz New Member in Splunk Search 05-04-2021
0 0
0
0
aquinojason
Hi,I have a list of accounting codes in a lookup table. I use that to identify applications under that accounting cod...
by aquinojason Path Finder in Splunk Search 05-04-2021
0 2
0
2
Flo-Paris
Hello,i searched few hours how to extract the RULE_NAME field from my Firewall logs without success.RULE_NAME is at t...
by Flo-Paris Explorer in Splunk Search 05-04-2021
0 3
0
3
pacifikn
Greetings!!Dear all!Hope you are well. I need your support on how to calculate the size of events we received per day...
by pacifikn Communicator in Splunk Search 05-04-2021
0 4
0
4
aaa2324
How to compare the incoming data with dynamic date and time with the lookup table, examplei have incoming data in bel...
by aaa2324 Explorer in Splunk Search 05-03-2021
0 3
0
3
Nith1
Hi TeamI have the required data in one of the fields but the logs are not in order how can i extract the required dat...
by Nith1 Path Finder in Splunk Search 05-03-2021
0 1
0
1
pjohnson1
I am working on time series data and would like to detect these type of trough's in the graphs.   The y axis is netwo...
by pjohnson1 Path Finder in Splunk Search 05-03-2021
0 4
0
4
ajmanish
I am trying to find the average time duration in hh:mm from the data in one column. Below is the search query which g...
by ajmanish New Member in Splunk Search 05-03-2021
0 1
0
1
nortonjco
index=environment sourcetype=infinity_thermostat < shows all the extracted fields and values under "Interesting Field...
by nortonjco Explorer in Splunk Search 05-03-2021
0 2
0
2
klim
I'm trying to use a case statement and assign part of a field for each case statement. For example case(len(field)=5,...
by klim Path Finder in Splunk Search 05-03-2021
0 2
0
2
jcorcoran508
Greetings -I do have the TA for nix.I spend a couple of hours scouring all my resources and looking at the TA_nix  wh...
by jcorcoran508 Path Finder in Splunk Search 05-03-2021
0 1
0
1
sl4dy
I have submitted the following query via Python SDK: earliest=-1d@d latest=@d | eval size_B=len(_raw) | eval mytime=...
by sl4dy Explorer in Splunk Search 05-03-2021
0 4
0
4
danielbb
Within _raw we have this segment - SQL_TEXT="grant create database link to aaa01, bbb02, yyy03, xxx04", We would like...
by danielbb Motivator in Splunk Search 05-03-2021
0 4
0
4
bmendez0428
The error I receive with this search causes me this error. Error in 'dbxquery' command: External search command exi...
by bmendez0428 Explorer in Splunk Search 05-03-2021
0 2
0
2
Janani_Krish
Currently I am using below query to run my search to get the common event in tc and email,|inputlookup tc | search ty...
by Janani_Krish Path Finder in Splunk Search 05-03-2021
0 17
0
17
sh_tavousi
Hi,Is there any way to backup/export regex saved in extracted fields as we want to use new instance as a search head ...
by sh_tavousi Explorer in Splunk Search 05-03-2021
0 1
0
1
gc12345
Hi I wish to dedup and consolidate customer details across two cities.E.g.  I have 2 records of the same customer acr...
by gc12345 Engager in Splunk Search 05-03-2021
0 3
0
3
gpugliese
Hello Community,I need your help to understand why if I use twice a "lookup" command on the same table lookup (out-of...
by gpugliese Explorer in Splunk Search 05-03-2021
1 2
1
2
xyz123
Hello,I have a macro that calls other macros in order to have a simple view of the code search.The thing is that when...
by xyz123 Explorer in Splunk Search 05-02-2021
0 2
0
2
ravir_jbp
Apr 30 09:13:30 localhost haproxy[22865]: 10.10.10.10:31872 [30/Apr/2021:09:13:30.362] verint rest_service/rest-hostn...
by ravir_jbp Explorer in Splunk Search 05-02-2021
0 3
0
3
karadikid
Might be a silly question, given the IN search command, is it possible to negate the query using NOT?For example:... ...
by karadikid Explorer in Splunk Search 05-02-2021
0 1
0
1
alex_orl
I have data of the kind Name Parameter1 Parameter2 Parameter3 A 1 A ...
by alex_orl Engager in Splunk Search 05-01-2021
2 5
2
5
mjones414
I would love a little guidance on how I could improve this search by getting away from Join.  I think I am hitting so...
by mjones414 Contributor in Splunk Search 05-01-2021
0 2
0
2
splunkerer
Hi Splunkers,I need your help on the following data set.Index=auditbeathost --> log sourcecommand --> command run by ...
by splunkerer Path Finder in Splunk Search 05-01-2021
0 3
0
3
Get Updates on the Splunk Community!

Recap | Agentic Operations Start with Context: Build the Right Data Foundation

Agentic Operations Start with Context: Build the Right Data Foundation   By Courtney Wright, Product Marketing ...

Recap | Assisted, Augmented or Agentic? Choose Your Splunk Starting Point

Assisted, Augmented or Agentic? Choose Your Splunk Starting Point   By Courtney Wright, Product Marketing ...

Session 2 | Beyond the Thread: Operationalizing AI with Confidence

Session 2   Beyond the Thread: Operationalizing AI with Confidence    The true power of the Cisco Data Fabric ...
Top Solution Authors