Splunk Search

Splunk Search
Community Activity
jip31
hiin the search below I need to excluse the results when instance=_total index="perfmon-fr" | fields %_User_Time hos...
by jip31 Motivator in Splunk Search 03-04-2021
0 1
0
1
jonaclough
Our ML team use the API to export large numbers of events for model training.They are hitting limits: [searchresults]...
by jonaclough Path Finder in Splunk Search 03-04-2021
0 0
0
0
VijaySrrie
How to convert tabular data to distinct countHi,I have a splunk query| stats count by operation (under field operatio...
by VijaySrrie Builder in Splunk Search 03-04-2021
0 5
0
5
mkiran18
Hi ,I have a json structure like this :  { "zip": 67452, "location": "NY", "author": { "book1": { "pr...
by mkiran18 Loves-to-Learn in Splunk Search 03-04-2021
0 4
0
4
pragycho
Hi ,I have data where  i  want to read comment line and store value in field.for example  , I have log where first  4...
by pragycho Loves-to-Learn in Splunk Search 03-04-2021
0 2
0
2
markthompson
Hello, I have this: stats count by opentime | stats avg(count) and I want the average to be in 2dp. Anyone have an...
by markthompson Builder in Splunk Search 03-03-2021
5 11
5
11
porbea01
Hi, I'm new in Splunk and I'm trying to collect Syslog log to indexers. I have read in Splunk documentation that Splu...
by porbea01 New Member in Splunk Search 03-03-2021
0 8
0
8
thenormalone
I have a field from the search query called source which has a pattern of "text:text:text:dynamicText:dynamicText:dyn...
by thenormalone Path Finder in Splunk Search 03-03-2021
0 3
0
3
wcastillocruz
Hello,@rnowitzki @renjith_nair could you help me on the following question please:I index every day at 6 p.m. splunk ...
by wcastillocruz Path Finder in Splunk Search 03-03-2021
0 8
0
8
Naga
Can we get a query to fetch the savedsearches/dashboards which are running with timerange more than 24 hours In oour ...
by Naga Engager in Splunk Search 03-03-2021
0 1
0
1
nits
Here is my Splunk Query:index=test "Entry Done for Id=" | rex field=_raw Id=(?<Id>.*?)# | rex field=_raw UserID=(?<Us...
by nits Explorer in Splunk Search 03-03-2021
0 1
0
1
wcastillocruz
Hello,@scelikokCould you help me on the following search please?I have a main search which groups me together all the...
by wcastillocruz Path Finder in Splunk Search 03-03-2021
0 0
0
0
vmvd
I have events that contain a userId field and I would like to make a line chart to visualize the average count per da...
by vmvd Explorer in Splunk Search 03-03-2021
0 3
0
3
ppatkar
 In some of the events, I have '\n' in the events :message: org.springframework.jdbc.UncategorizedSQLException: Calla...
by ppatkar Path Finder in Splunk Search 03-03-2021
0 1
0
1
Soogbad
I have this code that shows me the start and end times of runs of a program:index=index1 source=source1 | transaction...
by Soogbad Engager in Splunk Search 03-03-2021
0 3
0
3
sachdeva_2007
i do like to filter out Status code and Time Taken and other as fields#Fields: date time s-ip cs-method cs-uri-stem c...
by sachdeva_2007 Explorer in Splunk Search 03-03-2021
0 8
0
8
simo
Hi All,I have a table similar to the followingidtime12021-03-03 13:52:53.15812021-03-03 13:52:53.00112021-03-03 13:52...
by simo Path Finder in Splunk Search 03-03-2021
0 2
0
2
hnelsonit
I have my apache access logs going to cloudwatchlogs in aws. I used to use the aws addon TA for splunk to collect the...
by hnelsonit Explorer in Splunk Search 03-03-2021
0 7
0
7
ppatkar
I want to ignore the actual file name in my exception events so I can group the exceptions .For example, regex on bel...
by ppatkar Path Finder in Splunk Search 03-03-2021
1 4
1
4
ravir_jbp
Below are the event count in splunk. I am trying to create "% Free Space" for all three drive (C:,  E).03/02/2021 23...
by ravir_jbp Explorer in Splunk Search 03-03-2021
0 7
0
7
schufi01
Hi, I have problem with coloring my table. The picture shows my settings for coloring special fields. However, the 85...
by schufi01 Path Finder in Splunk Search 03-03-2021
0 0
0
0
enpingtu
We have below log event rows - correlationKey=abc msg="create cache for 123"correlationKey=abc "read cache for 123"co...
by enpingtu New Member in Splunk Search 03-02-2021
0 3
0
3
pc1234
Can someone assist extracting fields using the string below?The first line is header info: date, protocol, response_s...
by pc1234 Explorer in Splunk Search 03-02-2021
0 3
0
3
guilmxm
Hi all, I am currently working on various Dashboards for my company, for some of them i need to request data from lo...
by guilmxm Influencer in Splunk Search 03-02-2021
0 20
0
20
trever
I have events that often have lager JSON data in them, however, I need to send additional data along with them. Typic...
by trever Loves-to-Learn in Splunk Search 03-02-2021
0 2
0
2
Get Updates on the Splunk Community!

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...
Top Solution Authors