Splunk Search

Splunk Search
Community Activity
TGel
Hi,I am very new to Splunk.I searched for this but, could not find a match..Is it possible to find what system or hos...
by TGel Observer in Splunk Search 04-20-2021
0 3
0
3
kfancy
I have a problem I'm trying to solve in a subsearch query.The problem I'm trying to solve, is to monitor when two sep...
by kfancy New Member in Splunk Search 04-20-2021
0 2
0
2
roopeshetty
Hi Guys,We have this query which will give the output as a table with 3 columns in it by name Servername, ServerIP an...
by roopeshetty Path Finder in Splunk Search 04-20-2021
0 4
0
4
Kevin_S
Hello Experts,I am new to Splunk and trying to get a search query with subsearch to work. Here is what I have so far:...
by Kevin_S Explorer in Splunk Search 04-20-2021
0 4
0
4
Learner
index=dummy <mySearchCondition>| search response_code1!=200| stats countwhen i search for this query i get output as ...
by Learner Path Finder in Splunk Search 04-20-2021
0 1
0
1
phamxuantung
I have an index that have a field called ISSUER_NAME, but now we have a new set of events (different log structure) t...
by phamxuantung Communicator in Splunk Search 04-20-2021
0 1
0
1
ethanthomas
The requirement is, there is a single index . Data in three different format and there is an InputType coming in the ...
by ethanthomas Path Finder in Splunk Search 04-19-2021
0 3
0
3
kesrich
I have a log that that has multiple utc times listed. The logs are ingested into Splunk and I have created a field ex...
by kesrich Explorer in Splunk Search 04-19-2021
0 3
0
3
andres91302
Hello everyone!I'm trying to create a time chart of a variable that I have to compute as a global percentage between ...
by andres91302 Communicator in Splunk Search 04-19-2021
0 4
0
4
valpravin
Hi Teamcan you please help in extracting the  123456 from following stringhello world  \"employee\":123456 
by valpravin Engager in Splunk Search 04-19-2021
0 1
0
1
MeMilo09
Hi All, I am trying to replace gentimes from my query due to slowness. I have read that if I add the field to an auto...
by MeMilo09 Path Finder in Splunk Search 04-19-2021
0 0
0
0
dwharam
For inventory management purposes, I have been running the below splunk search for years.  It first checks Remedy and...
by dwharam New Member in Splunk Search 04-19-2021
0 0
0
0
Dheeru
Hi,I am new to splunk and I am trying to create a dashboard with optimizing the independent queries and by using all ...
by Dheeru Engager in Splunk Search 04-19-2021
0 1
0
1
alancalvitti
What's a scalable to extract key-value pairs where the value matches via exact or substring match but the field is no...
by alancalvitti Path Finder in Splunk Search 04-19-2021
0 11
0
11
raultav
Hi, guys!I need to get the difference in hours between _time and now(). How can I get this number?
by raultav Engager in Splunk Search 04-19-2021
0 1
0
1
andres91302
Hello Friends, I'm trying to generate a table that summarizes the total count of events A, B and C as follows search ...
by andres91302 Communicator in Splunk Search 04-19-2021
0 2
0
2
teedilo
We have some issues with line breaking such that we have events that often consist of multiple logical events, or the...
by teedilo Path Finder in Splunk Search 04-19-2021
0 2
0
2
raultav
Hi, guys!I have an event table, which has a field called "COD SERIE CEI". I need to get the "COD SERIE CEI" which has...
by raultav Engager in Splunk Search 04-19-2021
0 3
0
3
rseri17
Can you please help with extracting the fields from the below sample log. I am unable to escape the "'// &" '" in the...
by rseri17 Explorer in Splunk Search 04-19-2021
0 6
0
6
Traer001
Hello!I have two searches that return separate data but have a common field. I am trying to filter my first search by...
by Traer001 Path Finder in Splunk Search 04-19-2021
0 1
0
1
ayadav38
Hey there,I  created a field extraction from UI,using regular expression method,where regular expression got created ...
by ayadav38 Engager in Splunk Search 04-19-2021
0 1
0
1
sudo_su
Hello Splunkers,I would like to create a timechart for status. The data only comes when there's an update, so general...
by sudo_su Engager in Splunk Search 04-19-2021
0 2
0
2
nsantiago17
I'm trying to run this query below: (index=A sourcetype=jobs_info JOB_NAME IN (ACQUA)) OR (index=B sourcetype=FIRE) ...
by nsantiago17 Explorer in Splunk Search 04-19-2021
0 2
0
2
jacobmcn67
Hi all, I am trying to create a fourth column which would display all values between a given time range in the single...
by jacobmcn67 New Member in Splunk Search 04-18-2021
0 1
0
1
mariannedave
I have this XML data in one event but there are multiple transactions with same fieldnames . We need to display them ...
by mariannedave Explorer in Splunk Search 04-18-2021
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...