Splunk Search

Splunk Search
Community Activity
ejulien
I would like to do a search using 2 columns in a lookup table where the row is AND'd.  Something like Col1Col2A1B2C3D...
by ejulien Engager in Splunk Search 01-26-2021
0 2
0
2
travislelledeep
Trying to use a key-prefix when setting up a Generic S3 input that utilizes a wildcard in the path, but it doesn't lo...
by travislelledeep Explorer in Splunk Search 01-26-2021
1 3
1
3
djm229
Hello.  I have a search that results in, amongst other things, fields that are ALMOST duplicates.  Example:Bob: Task ...
by djm229 Engager in Splunk Search 01-26-2021
0 2
0
2
BigBoss__
Hello,I'm trying to create a search that grabs an authentication failure event followed by a an authentication succes...
by BigBoss__ Engager in Splunk Search 01-26-2021
0 3
0
3
fdevera
Mods please delete this duplicate post.
by fdevera Path Finder in Splunk Search 01-26-2021
0 1
0
1
orca
I would like to find out dashboards which are not optimized and each panel is triggering the independent search and c...
by orca Explorer in Splunk Search 01-26-2021
0 1
0
1
ritesh14
question is two foldquestion 1 -here is sample log|>messageType|2020-02-2 14:01:55.995|094a786b-4d07-498c-9c26-685aa4...
by ritesh14 Explorer in Splunk Search 01-26-2021
0 4
0
4
ZackWang
As the title said, if we have a field: "sourcetype=log4j" for all result, Should I add it to the search or remove it ...
by ZackWang Engager in Splunk Search 01-26-2021
0 1
0
1
kojodei789
Goodmorning guys much help needed. I have been receiving a lot of phishing attempts to recipients emails. I am lookin...
by kojodei789 Observer in Splunk Search 01-26-2021
0 2
0
2
donB
I am trying to find the top api url's that were consumed by our clients. Our uri in logs are of below format.1. https...
by donB Loves-to-Learn Lots in Splunk Search 01-26-2021
0 1
0
1
cheriemilk
Hi team, I have a stats requirement to get he user retention rate that visit a module per month in last 1 year.Detail...
by cheriemilk Path Finder in Splunk Search 01-26-2021
0 1
0
1
Damianv
Good day,I have been trying to figure out how to accomplish the following task for a few days now and thought I would...
by Damianv New Member in Splunk Search 01-26-2021
0 2
0
2
donB
i have to replace multiple text strings with different values. e.g.Log Statement:- "Hello, this is sample url for emp...
by donB Loves-to-Learn Lots in Splunk Search 01-26-2021
0 1
0
1
vikashperiwal
HI , I am trying to send values from one panel to another dashboard using drill down , is it possible to split the va...
by vikashperiwal Path Finder in Splunk Search 01-26-2021
0 2
0
2
ajromero
Need to calculate the percentage of two columns- I have a search that gives me a total of two columns and I need to g...
by ajromero Path Finder in Splunk Search 01-25-2021
0 1
0
1
rfiscus
I can test\\[\w]+\\[\w]+\\(?<File_Path>.+) or simply \\\w+\\\w+\\(?<File_Path>.+)in Rex101 and it works fineIn Splunk...
by rfiscus Path Finder in Splunk Search 01-25-2021
0 2
0
2
ak8675309
Splunk noob here,Wanted to group our get endpoints under a single entry. We have the following query  index=reporting...
by ak8675309 Engager in Splunk Search 01-25-2021
0 2
0
2
pdevosceazure
After Extracting fields for a source type, and spending a lot of time renaming them. I noticed I missed one.I can go ...
by pdevosceazure Path Finder in Splunk Search 01-25-2021
0 5
0
5
jerinvarghese
Hi All,need help in my query, formatting an IF statement.My Code:    index=opennms "uei.opennms.org/nodes/nodeUp" OR ...
by jerinvarghese Communicator in Splunk Search 01-25-2021
0 3
0
3
aaronhernandez
Hi friends! Im doing a search likeindex=_internalFrom a custom app, even if Im the admin user. I have a cluster Splun...
by aaronhernandez Explorer in Splunk Search 01-25-2021
1 3
1
3
duckware
Every event in an index has field XYZ (with a non-null positive number, no exceptions), and yet this search:index=<in...
by duckware Explorer in Splunk Search 01-24-2021
0 4
0
4
vijaykumartcs
I have a dashboard which has 11 rows and each row has 4 panels, now out of 11 rows 5rows belong to one application an...
by vijaykumartcs Explorer in Splunk Search 01-24-2021
0 1
0
1
arjit
Hi All,  I have a requirement where I need to show only alternate X axis label when I am running a chart command: ind...
by arjit Path Finder in Splunk Search 01-24-2021
0 1
0
1
gfriedmann
I have been tagging hosts to aid in searching by environment, service, sub-service I would like to make a dashboard ...
by gfriedmann Communicator in Splunk Search 01-23-2021
1 6
1
6
vsasdao
In my Search 1, it will list all unique port numbers associated with a certain IP address, i.e. 1.2.3.4"MYTOKEN is: f...
by vsasdao Explorer in Splunk Search 01-23-2021
0 3
0
3
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...
Top Solution Authors