Splunk Search

Splunk Search
Community Activity
FYPTEST
What I am trying to accomplish with the command is to find the events with the EventCode "4624" and Logon_Type "10" o...
by FYPTEST Engager in Splunk Search 01-27-2021
0 2
0
2
here2infinity
I would like to see instances with the source 'test*' - that is everything that starts with 'test' but eliminate 'tes...
by here2infinity Explorer in Splunk Search 01-27-2021
0 3
0
3
arunprasadlv
I have a field "BackendURL" which contains different url's. for eg : http://abc.com/emp?name=jim&no=101 http://abc....
by arunprasadlv Explorer in Splunk Search 01-27-2021
0 7
0
7
jmo1
 I am trying to write a query that will ignore events in certain indexes (these indexes change over time).  I have a ...
by jmo1 Path Finder in Splunk Search 01-27-2021
0 2
0
2
mzn1979
Hi everyoneI have a lookupfile that contains a name and an ID Brokers.csv Name ID Broker1 101 Broker2 ...
by mzn1979 Explorer in Splunk Search 01-27-2021
0 2
0
2
FelixLeh
Hey everyone,above you can see an example of what I can expect in my work environment..My goal is to modify the value...
by FelixLeh Contributor in Splunk Search 01-27-2021
0 2
0
2
Dylan_Kyle
Hi - i'm working on a simple dashboard where user will pick a certain date in a multipicker. Once date is being picke...
by Dylan_Kyle Loves-to-Learn Lots in Splunk Search 01-27-2021
0 1
0
1
mcayrol
Hello splunkers, I don't now if my title makes sense but here is the situation : I have an alert called buy signal an...
by mcayrol Explorer in Splunk Search 01-26-2021
0 2
0
2
jip31
hiAs you can see at the end of my search, I use a where conditionBut sometimes, even if the condition is true ('Geolo...
by jip31 Motivator in Splunk Search 01-26-2021
0 16
0
16
rcornett
Hi all, We are currently migrating from Splunk on-premise to the Cloud. One of the apps we heavily use is haversine t...
by rcornett New Member in Splunk Search 01-26-2021
0 3
0
3
fdevera
Hello, I need a regex to extract the GUID from non-standard UPN results that show up in this format: ex095838d@mydoma...
by fdevera Path Finder in Splunk Search 01-26-2021
0 2
0
2
ejulien
I would like to do a search using 2 columns in a lookup table where the row is AND'd.  Something like Col1Col2A1B2C3D...
by ejulien Engager in Splunk Search 01-26-2021
0 2
0
2
travislelledeep
Trying to use a key-prefix when setting up a Generic S3 input that utilizes a wildcard in the path, but it doesn't lo...
by travislelledeep Explorer in Splunk Search 01-26-2021
1 3
1
3
djm229
Hello.  I have a search that results in, amongst other things, fields that are ALMOST duplicates.  Example:Bob: Task ...
by djm229 Engager in Splunk Search 01-26-2021
0 2
0
2
BigBoss__
Hello,I'm trying to create a search that grabs an authentication failure event followed by a an authentication succes...
by BigBoss__ Engager in Splunk Search 01-26-2021
0 3
0
3
fdevera
Mods please delete this duplicate post.
by fdevera Path Finder in Splunk Search 01-26-2021
0 1
0
1
orca
I would like to find out dashboards which are not optimized and each panel is triggering the independent search and c...
by orca Explorer in Splunk Search 01-26-2021
0 1
0
1
ritesh14
question is two foldquestion 1 -here is sample log|>messageType|2020-02-2 14:01:55.995|094a786b-4d07-498c-9c26-685aa4...
by ritesh14 Explorer in Splunk Search 01-26-2021
0 4
0
4
ZackWang
As the title said, if we have a field: "sourcetype=log4j" for all result, Should I add it to the search or remove it ...
by ZackWang Engager in Splunk Search 01-26-2021
0 1
0
1
kojodei789
Goodmorning guys much help needed. I have been receiving a lot of phishing attempts to recipients emails. I am lookin...
by kojodei789 Observer in Splunk Search 01-26-2021
0 2
0
2
donB
I am trying to find the top api url's that were consumed by our clients. Our uri in logs are of below format.1. https...
by donB Loves-to-Learn Lots in Splunk Search 01-26-2021
0 1
0
1
cheriemilk
Hi team, I have a stats requirement to get he user retention rate that visit a module per month in last 1 year.Detail...
by cheriemilk Path Finder in Splunk Search 01-26-2021
0 1
0
1
Damianv
Good day,I have been trying to figure out how to accomplish the following task for a few days now and thought I would...
by Damianv New Member in Splunk Search 01-26-2021
0 2
0
2
donB
i have to replace multiple text strings with different values. e.g.Log Statement:- "Hello, this is sample url for emp...
by donB Loves-to-Learn Lots in Splunk Search 01-26-2021
0 1
0
1
vikashperiwal
HI , I am trying to send values from one panel to another dashboard using drill down , is it possible to split the va...
by vikashperiwal Path Finder in Splunk Search 01-26-2021
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...