Splunk Search

Splunk Search
Community Activity
Traer001
Hi all, I'm trying to use a transaction to get multiple pairs of events (the selection and release of a node). So I h...
by Traer001 Path Finder in Splunk Search 04-06-2021
0 4
0
4
zoe
Hi, I have:index=............|stats avg(test) by OrderNr Sub_OrderNrBut I want to something like this:OrderNr       S...
by zoe Path Finder in Splunk Search 04-06-2021
0 1
0
1
deees
I'm tasked with auditing syslog messages from some network devices for suspicious activity. I can use the IN operator...
by deees New Member in Splunk Search 04-06-2021
0 1
0
1
satyajit7
How to print a splunk default variable in search query? Actually I have two variables like $job.earliestTime$ and $jo...
by satyajit7 Explorer in Splunk Search 04-06-2021
0 4
0
4
bharat149
I have a log of the form"Associated integration for customer AAA is Integration{id=1865, clientID}, carrying out deac...
by bharat149 Explorer in Splunk Search 04-06-2021
0 1
0
1
phanichintha
Hello!As shown in the below picture, those are the events with a timestamp. I want when a "Kafka" service or "Jps" se...
by phanichintha Path Finder in Splunk Search 04-06-2021
0 14
0
14
luna
Hi Guys, How can I query an automatic lookup? Now, this is not the fields created through  an automatic lookup, but t...
by luna Explorer in Splunk Search 04-05-2021
0 1
0
1
ronaldtan1993
Hi Community,I encountered the following error message when using the ML Toolkit:'Error in 'fit' command: Invalid mes...
by ronaldtan1993 New Member in Splunk Search 04-05-2021
0 0
0
0
yuanliu
A convenience feature was introduced in 7 (well I noticed it in a Splunk 7 installation and not in 5 and 6) that auto...
by SplunkTrust SplunkTrust in Splunk Search 04-05-2021
0 1
0
1
Dirkoh
Currently search will display events with "Rejected" File Status, but if this Rejected file gets fixed and then is "D...
by Dirkoh Engager in Splunk Search 04-05-2021
0 3
0
3
alex5441
Hi,My logs are in following format:{[-]logger: .......message: ..........severity: Error}{[-]exception: .........logg...
by alex5441 Explorer in Splunk Search 04-05-2021
0 3
0
3
ashutoshwalke
I have something that runs every day but i need to see it only for previous EOM which is also a weekdayI have a field...
by ashutoshwalke Explorer in Splunk Search 04-05-2021
0 6
0
6
Engineer_Zen
How can I sort so that I can get the Stage_INT 1st and others after that and below is the output image. Can someone p...
by Engineer_Zen Observer in Splunk Search 04-05-2021
0 1
0
1
prettysunshinez
Hi..I have a table(panel 1) with the below columns..Col_A Col_BAnd based on the values of Col_B i will have to create...
by prettysunshinez Explorer in Splunk Search 04-05-2021
0 2
0
2
splunkcol
Hello, I have two indexes to which I need to compare the source ip and if it is the same, show me a message like true...
by splunkcol Builder in Splunk Search 04-05-2021
0 4
0
4
vijaybaskarss
Hello,I need to enable alert suppression during maintenance window in splunk ITSI. I have correlation searches where ...
by vijaybaskarss Loves-to-Learn Lots in Splunk Search 04-05-2021
0 0
0
0
adityapavan18
Is there a way to calculate total size of an index from all indexers? I can see index size from each individual index...
by adityapavan18 Contributor in Splunk Search 04-05-2021
2 21
2
21
dinumayu
Hi,Can you please assist with the query to get the greatest value (for one field) on that day and graph the data for ...
by dinumayu Observer in Splunk Search 04-05-2021
0 1
0
1
gitingua
Hello! I ran out of memory for the search head located in the cluster. The status is "AutomaticDetention". Is it poss...
by gitingua Communicator in Splunk Search 04-05-2021
0 1
0
1
the_wolverine
I could count against the raw data but it takes a long time. How can I more efficiently count on such stats?
by the_wolverine Champion in Splunk Search 04-04-2021
2 3
2
3
yoshilog
Using the extract function, I can arrive with the below columns:     I need to compare the values, and come up with a...
by yoshilog Explorer in Splunk Search 04-04-2021
0 4
0
4
Traer001
Hello!I am having trouble with a query where I want the results to depend on the time results of another query. This ...
by Traer001 Path Finder in Splunk Search 04-04-2021
0 1
0
1
luna
Hello,I have seen eventstats and stats used together, but I’m not clear on why and when the use of the mentioned woul...
by luna Explorer in Splunk Search 04-04-2021
0 2
0
2
Mary666
Hello Splunk Community, Here is my code and explanation of the issue below:I am having a very annoying issue that I c...
by Mary666 Communicator in Splunk Search 04-03-2021
0 3
0
3
svalivarthey
When i use below query i can see multiple servers in the index.Index=abc  sourcetype=vmstat (host=windows1* OR  host=...
by svalivarthey New Member in Splunk Search 04-03-2021
0 1
0
1
Get Updates on the Splunk Community!

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...
Top Solution Authors