Splunk Search

Splunk Search
Community Activity
zippo706
I'm sending data from Azure SQL via event hub.   Been using the MS add on for splunk, which as been working pretty we...
by zippo706 Explorer in Splunk Search 04-01-2021
0 0
0
0
mmagnuson
Hi, I'm new to this forum and Splunk in general, so thank you in advance for all your help. I'm trying to use rex in...
by mmagnuson Engager in Splunk Search 04-01-2021
0 4
0
4
Dheeraj25
I have two lookups B1.csv and B2.csv. B1 has block member and B2 has block id and both have one same column departmen...
by Dheeraj25 Engager in Splunk Search 04-01-2021
0 3
0
3
chuck_life09
Hi, I have the below lookup file sbl.csvIt has 3 rows 1. A=1, B = " Added" , C= 31/3/2021 04:16pm2. .A=1, B = " Added...
by chuck_life09 Path Finder in Splunk Search 04-01-2021
0 5
0
5
aohls
I am looking to calculate per second transactions but when doing so through either stats or a timechart I am hitting ...
by aohls Contributor in Splunk Search 04-01-2021
0 0
0
0
Noorzai
Hi Splunkers, I'm trying to install ITSI, but I don't see an install button. I can install it by downloading it manua...
by Noorzai Engager in Splunk Search 04-01-2021
0 4
0
4
splunkreal
Hello,I'm using metadata on hosts to get their first event time etc, are they accurate even on oldest records?| metad...
by splunkreal Influencer in Splunk Search 04-01-2021
0 2
0
2
Anthonylucian
Hey all, so im trying to generate a time chart. If i perform the the stats command to validate the number of state I ...
by Anthonylucian Path Finder in Splunk Search 04-01-2021
0 5
0
5
gerbert
Hello,I have a table from a xyseries. Each row consists of different strings of colors. I would like to pick one row ...
by gerbert Path Finder in Splunk Search 04-01-2021
0 2
0
2
mcohen13
I have a summary index that I created from existing index by using tstats command.when I try to use tstats on the sum...
by mcohen13 Loves-to-Learn in Splunk Search 04-01-2021
0 0
0
0
rlaan
I ran into a timeformatting issue with some of my logs due to the string starting with the following time format resu...
by rlaan Path Finder in Splunk Search 04-01-2021
0 1
0
1
giotto69
hello ,we have a problem with mrollup procedure for metrics indexes.We have setup e daily rollup for a metrics index;...
by giotto69 Observer in Splunk Search 04-01-2021
0 0
0
0
ggfsplunk
I'm trying to figure out to calculate the network utilization on this server using the eval and stats and I'm having ...
by ggfsplunk Engager in Splunk Search 04-01-2021
0 4
0
4
VijaySrrie
Hi,how will summary index actually work in relation to 'time based searches'maybe the summary index could have no tim...
by VijaySrrie Builder in Splunk Search 03-31-2021
0 1
0
1
alex5441
Hi,My current query for splunk dashboard is as:........| eval ErrorMsg=_raw | stats count by Application, ErrorMsg | ...
by alex5441 Explorer in Splunk Search 03-31-2021
0 6
0
6
anandhalagaras1
Hi Team,We have recently upgraded our Deployment Master server from 7.3.1 to 8.1.2 version. The upgrade seems to be s...
by anandhalagaras1 Contributor in Splunk Search 03-31-2021
0 12
0
12
rlaan
Goal is to parse new events based on this source value into multiline events split each time a new date is encountere...
by rlaan Path Finder in Splunk Search 03-31-2021
0 1
0
1
thunder_wu
| dbxquery connection=Realtime shortnames=tquery="select * from table_a awhere a.id = ?and a.create_dt_tm <= trunc...
by thunder_wu Path Finder in Splunk Search 03-31-2021
0 0
0
0
neileosis
I am trying to get counts based on comma delimited values for specified groupings of events.For instance I have the f...
by neileosis Engager in Splunk Search 03-31-2021
0 2
0
2
Anthonylucian
I currently have two searches that work separately but when I combine them into one search I cant seem to get it to r...
by Anthonylucian Path Finder in Splunk Search 03-31-2021
0 8
0
8
splunk_rookie
Hi, I am trying to identify which power meter reading has stopped increasing for 5 days. As these power values are ac...
by splunk_rookie Engager in Splunk Search 03-31-2021
0 2
0
2
NS
Hey Splunkers!Please help me with the below query.I have the below table, and i want to create a new column based on ...
by NS Explorer in Splunk Search 03-31-2021
0 2
0
2
kmfpo
Hello all.  I am trying to find the average by closed_month, but I want the average duration to include events from p...
by kmfpo Explorer in Splunk Search 03-31-2021
0 6
0
6
Dalador
Hi, guys. I have a big trouble here. I'm using rex to get ip-adresses. |rex max_match=0 "(?P<ip0>((?:[0-9]{1,3}\.){3}...
by Dalador Path Finder in Splunk Search 03-31-2021
0 15
0
15
splunkcol
I have 2 indexes, one called linux and another called firewall, how can I correlate both indexes to determine if the ...
by splunkcol Builder in Splunk Search 03-30-2021
0 2
0
2
Get Updates on the Splunk Community!

(re)Introducing the Splunk Community Champions + 2026 – 2027 Splunk MVPs ...

This program exists as a channel to empower and recognize Splunk advocates and help supercharge initiatives to ...

Introducing the 2026 - 2027 SplunkTrust cohort!

The goal of the SplunkTrust™ membership has historically been to acknowledge and recognize those who go above ...

Pro Tips for .conf26: How to Prep Like a Splunk Veteran

There’s no shortage of incredible content lined up for .conf26 in Denver, from deep-dive technical sessions ...
Top Solution Authors