Splunk Search

Splunk Search
Community Activity
Rjbeckwith
I have a lot of json data that contains periods in the keys. I want to be able to expand one of the arrays in the dat...
by Rjbeckwith Explorer in Splunk Search 03-11-2021
0 4
0
4
Vignesh-107
Can you please help me in masking the data.Raw Data: -> "login": "44337754-004613081080P"I want the number to be mask...
by Vignesh-107 Path Finder in Splunk Search 03-11-2021
0 2
0
2
mxanareckless
As seen in the first example, the expression I've constructed will capture the field values I want. However in the se...
by mxanareckless Path Finder in Splunk Search 03-11-2021
0 1
0
1
yan
Hello, I am new to SPL language.  I have been working on 'geostats' recently and not quite sure what 'translatetoxy' ...
by yan Engager in Splunk Search 03-11-2021
0 3
0
3
akhan94
I'm attempting to follow along with a Splunk Fundamentals training which requires me to upload a few files (csv, linu...
by akhan94 New Member in Splunk Search 03-11-2021
0 1
0
1
pragycho
Hi ,i  want to ignore some comment line and last comment  store value in field.for example  , I have log where first ...
by pragycho Loves-to-Learn in Splunk Search 03-11-2021
0 2
0
2
phamxuantung
Hello, I'm have a raw data that contain the following:....OrgnlTxRef:"04172D1xxxx","TxSts":"ACSC","StsRsnInt":{....I'...
by phamxuantung Communicator in Splunk Search 03-10-2021
0 3
0
3
thenormalone
I have http statuses that come in from 2 different indexes, with almost the same event but the event from one indexer...
by thenormalone Path Finder in Splunk Search 03-10-2021
0 3
0
3
altinCamp
I'm new to splunk, but I need to figure out how to count the number of error codes of a certain type over a rolling 7...
by altinCamp New Member in Splunk Search 03-10-2021
0 1
0
1
RomeSplunk123
Question, we are trying to monitor disk space usage in Splunk ITSI.We are trying to use templates as much as possible...
by RomeSplunk123 Explorer in Splunk Search 03-10-2021
0 1
0
1
jonaclough
I notice, by testing, that Splunk CLI searches do not appear to be subject to Splunk's limits.This behavior is useful...
by jonaclough Path Finder in Splunk Search 03-10-2021
0 0
0
0
haph
Hi guys,I have a dashboard where a user inputs data using dropdowns and text inputs. If he inputs all data and click ...
by haph Path Finder in Splunk Search 03-10-2021
0 0
0
0
jip31
hiwhy my where condition doesnt works please? `boot` | fields host Name Path DegradationTime | stats max(Degradatio...
by jip31 Motivator in Splunk Search 03-10-2021
0 6
0
6
StuartMacL
Hi all,First of all, I realize this is achievable using Security Essentials, however we have a lot of manually create...
by StuartMacL Path Finder in Splunk Search 03-10-2021
0 0
0
0
john_byun
I'm new to data models and have a very newbie question. We are using SplunkCloud and when I try to add an auto-extra...
by john_byun Path Finder in Splunk Search 03-10-2021
0 4
0
4
singhvikas
Hi Community,I'm new to this world. I saw some very helpful people helping out new starters so I gathered courage to ...
by singhvikas Explorer in Splunk Search 03-09-2021
0 0
0
0
bowesmana
Came across an interesting behaviour with collect today depending on whether you specify a sourcetype or not. If you ...
by SplunkTrust SplunkTrust in Splunk Search 03-09-2021
0 1
0
1
srinivasgowda
Hello all, I am working on getting specific entries deleted once the search runs and holds true.Below is the detailed...
by srinivasgowda Explorer in Splunk Search 03-09-2021
0 2
0
2
jip31
HelloI use the search below `wire` | fields AP_NAME USERNAME LAST_SEEN | eval USERNAME=upper(USERNAME) | eval LAST_...
by jip31 Motivator in Splunk Search 03-09-2021
0 10
0
10
jhackle13
My current search below pulls findings for current day and year-to-date starting 2/1/2021.  I need help with a way to...
by jhackle13 New Member in Splunk Search 03-09-2021
0 1
0
1
splunkcol
I have an implementation with Splunk cloud, as you know with this implementation in the cloud it would be the search ...
by splunkcol Builder in Splunk Search 03-09-2021
0 0
0
0
lbruhns
i have application logs which contain a message template in a json field (@mt) to convert other json fields into a hu...
by lbruhns Explorer in Splunk Search 03-09-2021
0 2
0
2
richardAtOmni
We use the HttpEventListener to input data into splunk. Our data is pipe ('|') delimited and we have setup field extr...
by richardAtOmni Path Finder in Splunk Search 03-09-2021
1 4
1
4
Razziq
Hello,I am trying to find the timings between multiple calls under the same extracted field of InterchangeId. When us...
by Razziq Explorer in Splunk Search 03-09-2021
0 2
0
2
mxanareckless
Here is what I need to generate:dbbakreport1.PNG   So far I have this search to generate everything but the right-mos...
by mxanareckless Path Finder in Splunk Search 03-09-2021
0 5
0
5
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...
Top Solution Authors