Splunk Search

Splunk Search
Community Activity
sahil237888
Hi, Can anyone help, As I want to get an alert if : The volume gets drop or if processing time gets increased of a sp...
by sahil237888 Path Finder in Splunk Search 03-13-2021
0 1
0
1
alexspunkshell
In my search result i am getting AD & Login locations.Now I want to filter result, if both AD and Login locations are...
by alexspunkshell Contributor in Splunk Search 03-12-2021
0 3
0
3
splunkkid
Hello, I'm trying to make time based table to check trend right away.The data is currently accumulated on daily basis...
by splunkkid Path Finder in Splunk Search 03-12-2021
0 2
0
2
kotak86
hello How can I get the dirname from the filepath.  I am looking something like thisAnkits-MacBook-Pro:~ akotak$ dirn...
by kotak86 Explorer in Splunk Search 03-12-2021
0 1
0
1
sachdeva_2007
run the below query and got the outputindex=xxx sc_status=201 OR sc_status=200| stats count(eval(sc_status)) as "Tota...
by sachdeva_2007 Explorer in Splunk Search 03-12-2021
0 1
0
1
exchanger
Hello, Unfortunately, my complete query does not go through because of the following error:The search auto-finalized ...
by exchanger Path Finder in Splunk Search 03-12-2021
1 1
1
1
jtelep
So I've got a lookup table full of hostnames that I want to compare to a search that returns only the active hosts so...
by jtelep New Member in Splunk Search 03-12-2021
0 8
0
8
tkerr1357
Hello all, I need some assistance using the search below to produce a timechart of the number of events per day for t...
by tkerr1357 Path Finder in Splunk Search 03-12-2021
0 3
0
3
TedWhite
I have a datasource that drops data into Splunk every 10 minutes that contains data about my team's workflow.The data...
by TedWhite Engager in Splunk Search 03-12-2021
0 2
0
2
troyhochsprung
I am looking for a search that returns an events(s) when the searched value remains for a set length of time. Using W...
by troyhochsprung New Member in Splunk Search 03-12-2021
0 3
0
3
phanichintha
Hi Everyone,Can anyone please share your comments, how many hours required to upgrade the Splunk version from 7.2.1 t...
by phanichintha Path Finder in Splunk Search 03-12-2021
0 1
0
1
leandromatperei
I'm using Splunk to examine the event logs on some servers looking for details regarding application crashes with the...
by leandromatperei Path Finder in Splunk Search 03-12-2021
0 3
0
3
jt
Hi everyone,I am new to splunk and was unsuccessful with my query.Let's say many events are aggregated in an index fr...
by jt New Member in Splunk Search 03-12-2021
0 1
0
1
SS1
Hi,I have extracted 2 fields i.e. field1 & field2, while using the stats count command how do i use these extracted f...
by SS1 Path Finder in Splunk Search 03-11-2021
0 3
0
3
splunk_ier
Hi Team,I have the below logs in splunk and i'm looking for query to get the time taken to compete the run by each bo...
by splunk_ier Engager in Splunk Search 03-11-2021
0 1
0
1
johnangelo
Hi! So ive been at this for hours attempting to use stats and transactions to do this.I have two events that look lik...
by johnangelo Loves-to-Learn in Splunk Search 03-11-2021
0 5
0
5
ldnail_at_TI
This is result of a query that reflects license consumption by dayIndex3/2/20213/3/20213/4/20213/5/20213/6/20213/7/20...
by ldnail_at_TI Path Finder in Splunk Search 03-11-2021
0 2
0
2
813_Gerb
Hello, I am new to Splunk and REGEX for that matter. What I am trying to accomplish is creating an alert when a speci...
by 813_Gerb Engager in Splunk Search 03-11-2021
0 3
0
3
Rjbeckwith
I have a lot of json data that contains periods in the keys. I want to be able to expand one of the arrays in the dat...
by Rjbeckwith Explorer in Splunk Search 03-11-2021
0 4
0
4
Vignesh-107
Can you please help me in masking the data.Raw Data: -> "login": "44337754-004613081080P"I want the number to be mask...
by Vignesh-107 Path Finder in Splunk Search 03-11-2021
0 2
0
2
mxanareckless
As seen in the first example, the expression I've constructed will capture the field values I want. However in the se...
by mxanareckless Path Finder in Splunk Search 03-11-2021
0 1
0
1
yan
Hello, I am new to SPL language.  I have been working on 'geostats' recently and not quite sure what 'translatetoxy' ...
by yan Engager in Splunk Search 03-11-2021
0 3
0
3
akhan94
I'm attempting to follow along with a Splunk Fundamentals training which requires me to upload a few files (csv, linu...
by akhan94 New Member in Splunk Search 03-11-2021
0 1
0
1
pragycho
Hi ,i  want to ignore some comment line and last comment  store value in field.for example  , I have log where first ...
by pragycho Loves-to-Learn in Splunk Search 03-11-2021
0 2
0
2
phamxuantung
Hello, I'm have a raw data that contain the following:....OrgnlTxRef:"04172D1xxxx","TxSts":"ACSC","StsRsnInt":{....I'...
by phamxuantung Communicator in Splunk Search 03-10-2021
0 3
0
3
Get Updates on the Splunk Community!

ATTENTION: We’re Moving! (AGAIN!)

The Splunk Community Slack is undergoing a system migration to keep our workspace secure and ...

Deep Dive: Optimizing Telemetry Pipelines in Splunk Observability Cloud

In this session, we will peel back the layers of Splunk Observability Cloud’s cost-optimization features. ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...