Splunk Search

Splunk Search
Community Activity
johefu
Hello All,I am trying to get a total number of bytes/MB/GB  uploaded per application in Splunk.Can't seem to find the...
by johefu Loves-to-Learn in Splunk Search 04-07-2021
0 1
0
1
LogUx
As per below screen shot i created toggle tabs and when i used the in by below panel results are not poplutating.Plea...
by LogUx Motivator in Splunk Search 04-07-2021
0 0
0
0
mrovira
Hello,I've around questions and answers but I cannot find the one I need.I'm selecting previous week in the time rang...
by mrovira Engager in Splunk Search 04-07-2021
0 3
0
3
zoe
Hi, I have 3 products 1, 2, and 3, each of them contain several elements a, b c, d. Each product has different specif...
by zoe Path Finder in Splunk Search 04-07-2021
0 4
0
4
aaa2324
What is the difference between earliest=-5min and earliest=-5min@min
by aaa2324 Explorer in Splunk Search 04-07-2021
0 1
0
1
sanketas
Team,I have been using this below commands to verify whether particular print queues have printed from the print serv...
by sanketas New Member in Splunk Search 04-06-2021
0 1
0
1
splunkpaterd2
Good morning, suppose I have the following entries in my file :BEGIN abcdefEND;BEGIN xyzEND;***I want to search for t...
by splunkpaterd2 Explorer in Splunk Search 04-06-2021
0 6
0
6
sdkp03
I have a lookup file with 3 fields - source, status, timestamp.  Timestamp is saved as per below:eval timestamp=strft...
by sdkp03 Communicator in Splunk Search 04-06-2021
0 5
0
5
alancalvitti
We need to run the same query over a list of values (10k to 100k) without knowing the exact key across various indexe...
by alancalvitti Path Finder in Splunk Search 04-06-2021
0 5
0
5
adidibra
Hello, I need to move old logs for a specific logsource(host) to be indexed in another splunk cluster. When I use the...
by adidibra Engager in Splunk Search 04-06-2021
0 0
0
0
adidibra
Hello,I am getting the following error while searching in splunk.Could not load lookup=LOOKUP-cisco_pix_severity_look...
by adidibra Engager in Splunk Search 04-06-2021
0 2
0
2
Traer001
Hi all, I'm trying to use a transaction to get multiple pairs of events (the selection and release of a node). So I h...
by Traer001 Path Finder in Splunk Search 04-06-2021
0 4
0
4
zoe
Hi, I have:index=............|stats avg(test) by OrderNr Sub_OrderNrBut I want to something like this:OrderNr       S...
by zoe Path Finder in Splunk Search 04-06-2021
0 1
0
1
deees
I'm tasked with auditing syslog messages from some network devices for suspicious activity. I can use the IN operator...
by deees New Member in Splunk Search 04-06-2021
0 1
0
1
satyajit7
How to print a splunk default variable in search query? Actually I have two variables like $job.earliestTime$ and $jo...
by satyajit7 Explorer in Splunk Search 04-06-2021
0 4
0
4
bharat149
I have a log of the form"Associated integration for customer AAA is Integration{id=1865, clientID}, carrying out deac...
by bharat149 Explorer in Splunk Search 04-06-2021
0 1
0
1
phanichintha
Hello!As shown in the below picture, those are the events with a timestamp. I want when a "Kafka" service or "Jps" se...
by phanichintha Path Finder in Splunk Search 04-06-2021
0 14
0
14
luna
Hi Guys, How can I query an automatic lookup? Now, this is not the fields created through  an automatic lookup, but t...
by luna Explorer in Splunk Search 04-05-2021
0 1
0
1
ronaldtan1993
Hi Community,I encountered the following error message when using the ML Toolkit:'Error in 'fit' command: Invalid mes...
by ronaldtan1993 New Member in Splunk Search 04-05-2021
0 0
0
0
yuanliu
A convenience feature was introduced in 7 (well I noticed it in a Splunk 7 installation and not in 5 and 6) that auto...
by SplunkTrust SplunkTrust in Splunk Search 04-05-2021
0 1
0
1
Dirkoh
Currently search will display events with "Rejected" File Status, but if this Rejected file gets fixed and then is "D...
by Dirkoh Engager in Splunk Search 04-05-2021
0 3
0
3
alex5441
Hi,My logs are in following format:{[-]logger: .......message: ..........severity: Error}{[-]exception: .........logg...
by alex5441 Explorer in Splunk Search 04-05-2021
0 3
0
3
ashutoshwalke
I have something that runs every day but i need to see it only for previous EOM which is also a weekdayI have a field...
by ashutoshwalke Explorer in Splunk Search 04-05-2021
0 6
0
6
Engineer_Zen
How can I sort so that I can get the Stage_INT 1st and others after that and below is the output image. Can someone p...
by Engineer_Zen Observer in Splunk Search 04-05-2021
0 1
0
1
prettysunshinez
Hi..I have a table(panel 1) with the below columns..Col_A Col_BAnd based on the values of Col_B i will have to create...
by prettysunshinez Explorer in Splunk Search 04-05-2021
0 2
0
2
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Self-Healing Pipeline Is Now Generally Available: AI-Powered CIM Compliance

Maintaining data integrity across security and analytics pipelines is an ongoing challenge. Data ...