Splunk Search

Splunk Search
Community Activity
Scott_Kudelski
I would like to be able to retrieve the name of the current search to pass to a macro in the search.Saved Search name...
by Scott_Kudelski Explorer in Splunk Search 03-15-2021
0 3
0
3
Montalvolll
Greetings all,I'm currently working on a A/B testing dashboard to see which landing page is having more engagement. O...
by Montalvolll Explorer in Splunk Search 03-15-2021
0 0
0
0
youngso
Q1:  is there a way to import a matrix into Splunk? Q2:  What SPL command gives me all values set to true and tells m...
by SplunkTrust SplunkTrust in Splunk Search 03-15-2021
0 3
0
3
designer46
Hi everyone, See if someone could give me a hand. My scenario is similar to this:Table 1IDID2Whatever rest columns......
by designer46 Explorer in Splunk Search 03-15-2021
0 4
0
4
Sharzi
Hello,I recently faced an issue when populating a summary index. I scheduled a saved search to run every hour (with t...
by Sharzi Explorer in Splunk Search 03-15-2021
0 3
0
3
akarollil
Hello,I am trying to collect stats per hour using a data model for a absolute time range that starts 30 minutes past ...
by akarollil Explorer in Splunk Search 03-15-2021
0 4
0
4
msrama5
Hello, I have 3 queries as below and all 3 return starid, I need to check if starid from query 1 exists on starid fro...
by msrama5 Explorer in Splunk Search 03-15-2021
0 3
0
3
nikitha15
Hi all,I have only started working on splunk recently and i am stuck at one query. So, I have JSON data like below: c...
by nikitha15 Explorer in Splunk Search 03-15-2021
0 1
0
1
rsmall13
Hi, I am very new to Splunk.  I would like to know how to search just the latest  log file from the below screenshot....
by rsmall13 Explorer in Splunk Search 03-15-2021
0 3
0
3
rsmall13
Hi, I'm looking to create a real-time alert, but I don't see the alert type option of 'real-time' as shown below.  We...
by rsmall13 Explorer in Splunk Search 03-15-2021
0 0
0
0
jip31
hello I use a scheduled search where I stats events like this :| stats last(LastReboot) as "Last reboot date" by host...
by jip31 Motivator in Splunk Search 03-15-2021
0 1
0
1
JimboSlice
Hi, am I doing this correct or is there another way to tabulate this JSON?I've seen many examples on the forums of pe...
by JimboSlice Path Finder in Splunk Search 03-15-2021
1 8
1
8
bernanda
Hi Splunkers, Anyone can help, I need to count field Flag where value is 0.I've tried using this command " streamstat...
by bernanda Explorer in Splunk Search 03-15-2021
0 2
0
2
jip31
hello In the search below, I need to display anything if the Hostname is not foundActually, I have the fields display...
by jip31 Motivator in Splunk Search 03-15-2021
0 2
0
2
emily12234
HiWe have to retrieve DATA through REST API and then display the data in the dashboard.After reading documents, the a...
by emily12234 Explorer in Splunk Search 03-14-2021
0 1
0
1
spammenot66
I have a table of users and their position level across an organization. How would i join the table of positions and ...
by spammenot66 Contributor in Splunk Search 03-14-2021
0 3
0
3
hollybross1219
Hi there,I'm having a really hard time creating an alert based of a search that detects the absence of events.I have ...
by hollybross1219 Path Finder in Splunk Search 03-14-2021
0 7
0
7
zippo706
I'm trying to produce an alert based on a user logged in w/ 2 ips within 10 minutes.   I have a way to determine if t...
by zippo706 Explorer in Splunk Search 03-14-2021
0 2
0
2
swagatam1308
Hi All,We need to write a python script  to pull data for below query ,using script below but no output is showing.Pl...
by swagatam1308 Engager in Splunk Search 03-14-2021
0 11
0
11
davidoking
Hi,I have a few fields  and I am trying to get results on  e.g. Field1 (Person) Field2(Sales) Field3 (Location). what...
by davidoking Explorer in Splunk Search 03-14-2021
0 5
0
5
Vignesh-107
I have a lookup i want to assign it to a single field Example:This is my lookup table with valuesMessge 00100Messge 1...
by Vignesh-107 Path Finder in Splunk Search 03-14-2021
0 2
0
2
abhishekpatel2
I want to split row into multiple row by spliting it under the same column.Example:-col1     col2     col3     col4A,...
by abhishekpatel2 Explorer in Splunk Search 03-14-2021
0 6
0
6
jg91
Hello,I want to search for all src hosts that connect to a specific destination with or without intermediary hopes. I...
by jg91 Path Finder in Splunk Search 03-13-2021
0 2
0
2
tkerr1357
Hello all, Looking for some help with a perfmon search. index=perfmon host=myhost01s* sourcetype="PerfmonMk:LogicalDi...
by tkerr1357 Path Finder in Splunk Search 03-13-2021
0 1
0
1
architkhanna
Hi,I have a panel in Splunk dashboard which is a table and has two columns.The first column is comment and second is ...
by architkhanna Path Finder in Splunk Search 03-13-2021
0 3
0
3
Get Updates on the Splunk Community!

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

All Work and No Play? Not at .conf26! Unwind at These Evening Events

Between hands-on technical sessions, keynote reveals, and diving into live architectures, .conf26 is packed ...

Join the Hackathon at .conf26 and build a No-Code AI agent

Join us for the AI Agent Buildathon, an in-person, three-hour hands-on Hackathon where you’ll use Splunk Agent ...
Top Solution Authors