Splunk Search

Splunk Search
Community Activity
aniket
I am pretty new to splunk and i have a query which uses TABLE command to filter output on certain fields. The output ...
by aniket New Member in Splunk Search 02-17-2021
0 2
0
2
Kupo
I have two sources that have a common field (user) and am currently using transaction to join the user_a with the sou...
by Kupo Engager in Splunk Search 02-17-2021
0 2
0
2
amsagg
Hi Everyone,I am trying to use  a lookup table and an index to get an output as a comparison of two fields from two d...
by amsagg Observer in Splunk Search 02-17-2021
0 2
0
2
Hudond
Good MorningAs I am new to Splunk,  sometimes I need to try things that are beyond my comprehension at this time. Thi...
by Hudond Path Finder in Splunk Search 02-17-2021
0 2
0
2
bhartiya007
I am fairly new to splunk and still learning. I have a splunk event which is a mix of some texts and json in between....
by bhartiya007 Loves-to-Learn Lots in Splunk Search 02-17-2021
0 11
0
11
sasankganta
I have raw event like : time action severity host , etc., But when I checked interesting filed action filed is not sh...
by sasankganta Path Finder in Splunk Search 02-17-2021
0 11
0
11
Glasses
Lets say I have 3 lookups >>> a-list.csv, b-list.csv, c-list.csv and the lists only have 1 column header = NameAlice ...
by Glasses Builder in Splunk Search 02-17-2021
2 3
2
3
jacob_rod
Hello friends,Please try to assist me.My data structure is -Date , field1 , field2 , field3I need to search events th...
by jacob_rod Explorer in Splunk Search 02-17-2021
0 2
0
2
ruchijain
Hi, I am trying to search for a list of users who have not logged into the Splunk environment in the past 30 days. ...
by ruchijain New Member in Splunk Search 02-17-2021
0 6
0
6
hishamjan
index=_* OR index=* sourcetype=Kamailio BC="Current Billable Calls Count:" | rex field=_raw "Count:(?<Billablecalls>....
by hishamjan Explorer in Splunk Search 02-17-2021
0 5
0
5
Jarohnimo
Hello All, I just upgraded to the latest version of Splunk 7.2.5 and now when I search anything i recieve errors sta...
by Jarohnimo Builder in Splunk Search 02-17-2021
0 6
0
6
jacob_rod
Hello,Help will be very appreciated.My splunk index contains a field with codes, and another field with names.Every e...
by jacob_rod Explorer in Splunk Search 02-16-2021
0 6
0
6
ShoeBuster
Hello Community,2 part question: First, how to use an IF / ELSE statement, secondly, how to specify the JSON elements...
by ShoeBuster Observer in Splunk Search 02-16-2021
0 2
0
2
subtrakt
Hi! Anyone know why i'm still getting NULL in my timechart? The lookup "existing" has two columns "ticket|host_mess...
by subtrakt Contributor in Splunk Search 02-16-2021
2 5
2
5
ivana27
Hi all,please can you help to solve this error by modifying rex line. Here is my error:Error in 'rex' command: regex=...
by ivana27 Path Finder in Splunk Search 02-16-2021
0 7
0
7
Pathik
Hello All, I have and seen many others loading wrong splunk dashboard.Knowing that splunk dashboards at times contain...
by Pathik Path Finder in Splunk Search 02-16-2021
0 0
0
0
shinde0509
SPlunk SPL query to list unique serverclass and Apps present in deployment server.
by shinde0509 Explorer in Splunk Search 02-16-2021
0 2
0
2
ivana27
Hi Splunkers,please help. I have search where i want to show percentages by host of how many errors (mentioned below)...
by ivana27 Path Finder in Splunk Search 02-16-2021
0 2
0
2
venky1544
Hi Alli have a below data DateOrginaldatejobidprocess_nameMessge_text14-02-2020 T11:30:0014-02-2020 T11:25:00a1234tes...
by venky1544 Builder in Splunk Search 02-16-2021
0 2
0
2
Astorn
I have lookup with possible sources and i'm comparing them with the real log events to check if any of them don't sen...
by Astorn Loves-to-Learn in Splunk Search 02-16-2021
0 8
0
8
sharif_ahmmad
Hello Community, I need to fill null value of multi-field values with any value , i.e 0 or Not found. Here's the sa...
by sharif_ahmmad Explorer in Splunk Search 02-15-2021
0 20
0
20
mztopp
I have a lookup: test.csv that has a list of 10 IP's (src_ip). I want to be able to search a datamodel that  looks fo...
by mztopp Explorer in Splunk Search 02-15-2021
0 1
0
1
SamHTexas
How do I confirm the host name & IP address of a  host I am logged in in Splunk GUI?
by SamHTexas Builder in Splunk Search 02-15-2021
0 1
0
1
moguai
I have a scenario where typical HTTP requests are logged in Splunk.Every request has an unique identifier which is sa...
by moguai Explorer in Splunk Search 02-15-2021
0 4
0
4
maaneeel
Hello,I need to create a dashboard panel (table) doing a query that uses the following filtering condition:account_na...
by maaneeel Explorer in Splunk Search 02-15-2021
0 4
0
4
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...