Splunk Search

Splunk Search
Community Activity
johnrbhancock
I have two queries. I have enabled the installed software script in splunk so I can determine where software is not i...
by johnrbhancock Engager in Splunk Search 04-09-2021
0 2
0
2
SamHTexas
McAfee data ingested into Splunk not parsing correctly. How do I fix it? I am getting a lot of junk. Please advise ho...
by SamHTexas Builder in Splunk Search 04-09-2021
0 2
0
2
epsidata
Hello all, We are successfully creating a Sankey Visualization of our data, however when we try to expand how many ro...
by epsidata New Member in Splunk Search 04-09-2021
0 0
0
0
Dalador
I have a lookup table with Scheduled Tasks called scheduled_tasks, and Columns Command, Arguments. I need to do a sea...
by Dalador Path Finder in Splunk Search 04-09-2021
0 4
0
4
danielrusso1
I have a hex value that i need to convert to ascii. is there a way to do this in splunk? string-value=0x4c617374206...
by danielrusso1 Path Finder in Splunk Search 04-09-2021
4 16
4
16
sasireka
I have displayed two sample xml files below.  I have to check whether a xml file has <customer-job-id> and <submissio...
by sasireka Loves-to-Learn Lots in Splunk Search 04-09-2021
0 1
0
1
Ida_2017
Hi Everybody:I need a little help with statistics: I use this search to list all Calling_Station_IDs. In the example ...
by Ida_2017 Explorer in Splunk Search 04-09-2021
0 1
0
1
shazbot79
Hi, a user wants to see the description of a report as well as the title. I know he could click the drop down arrow b...
by shazbot79 Path Finder in Splunk Search 04-09-2021
0 1
0
1
pcheng
Hi, I have events from various projects, and each event has an eventDuration field. I'm trying to visualize the foll...
by pcheng Explorer in Splunk Search 04-09-2021
0 16
0
16
DawoodKhanUlex
Hi Folks, I am working on creating an alert for endpoint where we have to check if its service came up after it got s...
by DawoodKhanUlex Engager in Splunk Search 04-09-2021
0 1
0
1
Learner
Hi all, endswith=(notificationType="TestCompleted" OR notificationType="TestCancelled" OR notificationType="TestRejec...
by Learner Path Finder in Splunk Search 04-09-2021
0 1
0
1
Dalador
Hi, i use regex to extract fields My query is | rex field=_raw "(?P<Command>((?<=\bCommand>).*(?=<)))" | rex field=_r...
by Dalador Path Finder in Splunk Search 04-09-2021
0 3
0
3
gvjyothi45
index=a0_payservutil_generic_app_audit_prd sourcetype="npp:pom:stdout" eventCode="fundsReservationManualInterventionN...
by gvjyothi45 New Member in Splunk Search 04-09-2021
0 1
0
1
satyajit7
I have a requirement like, I have to create a dashboard and there will be a input filed called as account Id and afte...
by satyajit7 Explorer in Splunk Search 04-09-2021
0 1
0
1
SamHTexas
How do I find the versions of all my UFs & HFs and dates of install on Splunk Enterprise?
by SamHTexas Builder in Splunk Search 04-08-2021
0 1
0
1
paulerlong
The following query returns a result that is one hour off.| makeresults| eval timestr="2020-03-08T02:00:21"| eval uni...
by paulerlong Explorer in Splunk Search 04-08-2021
0 4
0
4
Ranjeeth
With the below query I'm trying to sort dateTime by descending order but the sorting is not working, could someone pl...
by Ranjeeth New Member in Splunk Search 04-08-2021
0 1
0
1
ipoluda
I have proxy logs, in which I am interested in 4 fields: the ip address of the user's computer, the category of the s...
by ipoluda Explorer in Splunk Search 04-08-2021
0 1
0
1
ashutoshwalke
Hi,I am unable to hide the X-axis scale in the bar chart. See below screenshot,I am plotting the chart using below qu...
by ashutoshwalke Explorer in Splunk Search 04-08-2021
0 4
0
4
najaplit
Hello,I have a search query that produces a value similar to below.  What i am trying to accomplish is to extract the...
by najaplit New Member in Splunk Search 04-08-2021
0 1
0
1
davidpcm
How do I create a search with below table result?Date RangeTime RangeCount of UsersJan-40900-1700900Jan-50900-1700500...
by davidpcm Observer in Splunk Search 04-08-2021
0 2
0
2
anandhalagaras1
Hi TeamI have set of 5 hosts which are coming from an index=xyz and with sourcetype=iis so for example if any of the ...
by anandhalagaras1 Contributor in Splunk Search 04-08-2021
0 7
0
7
pduvofmr
Hi Community,how do i combine where and eval?Available field are "Gear" and "Torque_Crankshaft"Discribed in my human ...
by pduvofmr Path Finder in Splunk Search 04-08-2021
0 2
0
2
StefanW
Hello,we use mstats to visualize the _value. But for cpu perfmon values there is a number with 10 or more decimals af...
by StefanW Path Finder in Splunk Search 04-08-2021
0 0
0
0
cheriemilk
Hi team,I have below sample events in splunk. 2021-04-09 07:12:41,323 PLV=EVENT DT=MANUALEVENT CIP=0.0.0.1CMID=shangT...
by cheriemilk Path Finder in Splunk Search 04-08-2021
0 1
0
1
Get Updates on the Splunk Community!

New Year, New Changes for Splunk Certifications

As we embrace a new year, we’re making a small but important update to the Splunk Certification ...

[Puzzles] Solve, Learn, Repeat: Unmerging HTML Tables

[Puzzles] Solve, Learn, Repeat: Unmerging HTML TablesFor a previous puzzle, I needed some sample data, and ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...
Top Solution Authors