Splunk Search

Splunk Search
Community Activity
johnward4
I'm looking for help to filter my mstats data using eventtype OR tag I've created for groups of hosts..Here's an exam...
by johnward4 Communicator in Splunk Search 12-03-2020
0 0
0
0
georgear7
I have below 3 different set of events coming from same source. So i have extracted the field using rex command for e...
by georgear7 Communicator in Splunk Search 12-03-2020
0 6
0
6
poisar
i have a field with several strings likefieldname = AT-field2-field3fieldname = DE-field2fieldname = DE-field2-field3...
by poisar Explorer in Splunk Search 12-03-2020
0 2
0
2
loocayak
Hi there, I am not sure if I am missing out the obvious but I would pretty much like to be able to run stats count of...
by loocayak Observer in Splunk Search 12-03-2020
0 1
0
1
Glasses
Hi,I am looking for a bit guidance  breaking out multi-kv pairs in json logs.For example, I have json email logs wher...
by Glasses Builder in Splunk Search 12-03-2020
0 2
0
2
roderick001
Hi, I have this error message and it is stopping any data being shown in data summary, I can't add any data as .zip o...
by roderick001 Explorer in Splunk Search 12-03-2020
0 6
0
6
habiba29
HI,me. Am trying to do analysis of stacktraces in splunk for our RDMS. Essentially we can extract the spid for each s...
by habiba29 New Member in Splunk Search 12-03-2020
0 3
0
3
pduvofmr
Hi @ All,i know, ther are many diskussions about this topic, but nobody sent his solution MY CODE:<input type="text"...
by pduvofmr Path Finder in Splunk Search 12-03-2020
0 0
0
0
avasquez
Hi,I'm trying to configure a time-based lookup (temporal lookup) but it doesn't seem to be working as expected.1) The...
by avasquez Loves-to-Learn Lots in Splunk Search 12-03-2020
0 0
0
0
llacoste
Hi,So I've been facing some challenges with some of my users and I don't really know exactly how to tackle this.Despi...
by llacoste Path Finder in Splunk Search 12-03-2020
0 3
0
3
Jagdish
i am trying to extract http status from below event row text using search , but could not able to get status,event co...
by Jagdish Loves-to-Learn Lots in Splunk Search 12-03-2020
0 4
0
4
robayers
Here is a sample of the search, can anyone help?  The query works and returns data but errors out on the output filen...
by robayers Explorer in Splunk Search 12-03-2020
0 5
0
5
Hemant1
ERROR [monki_HMCatalogSyncJob::de.hybris.platform.servicelayer.internal.jalo.ServicelayerJob] -[J= U= C=] (monki) (00...
by Hemant1 Explorer in Splunk Search 12-03-2020
0 4
0
4
sangs8788
Hi,I have a below search result which shows Violators as red in color. Violators are more than 2 secI would like to g...
by sangs8788 Communicator in Splunk Search 12-03-2020
0 2
0
2
bwlm
Similar to the Regex to find a directory in a path question, how does one find the full directory path to an file (e....
by bwlm Path Finder in Splunk Search 12-02-2020
0 1
0
1
rileyken
I have these paths as sources for an index (the paths are linux file system paths) /usr/local/myfiles1/myfacilityA/...
by rileyken Explorer in Splunk Search 12-02-2020
0 3
0
3
dunyaelbasan
I have shown the queries I made with set diff and eval below. My aim is to compare the report of 07:00 to 07:00 of th...
by dunyaelbasan Path Finder in Splunk Search 12-02-2020
0 0
0
0
pstalin_
index=105261-cli sourcetype=show_processes_cpu pid=0| dedup deviceId| fields deviceId, idle, fiveMinutes| eval cpuLoa...
by pstalin_ Engager in Splunk Search 12-02-2020
0 1
0
1
wryanthomas
Search optimization question for y’all: We have an accelerated data model to try to drive improved performance for so...
by wryanthomas Contributor in Splunk Search 12-02-2020
0 1
0
1
elaozz
Hi all,I am trying to create a correlation search query for "data exfiltration via email" using email datamodelthe ru...
by elaozz New Member in Splunk Search 12-02-2020
0 0
0
0
jfhopkins2
Is there a SPL query pattern that can perform "hierarchical counting" beyond the two levels of depth outlined in thes...
by jfhopkins2 Engager in Splunk Search 12-02-2020
0 2
0
2
daisy_st
Hi all,I am using data from 3 different indexes. They contain events which can be attributed to specific transactions...
by daisy_st Loves-to-Learn Everything in Splunk Search 12-02-2020
0 2
0
2
ngwodo
I need help on splunk query that will count both filled and empty cells in excel spreadsheet differently  and give th...
by ngwodo Path Finder in Splunk Search 12-02-2020
0 6
0
6
wmyersas
Like the title says - how are individual searches in a multisearch handled?Are they distributed across any/all availa...
by wmyersas Builder in Splunk Search 12-02-2020
0 1
0
1
briansarmiento
Hi everyone, I'm trying to create a simple list with all the devices found on the logs from globalprotect. The deal i...
by briansarmiento Explorer in Splunk Search 12-02-2020
0 6
0
6
Get Updates on the Splunk Community!

Build the Future of Agentic AI: Join the Splunk Agentic Ops Hackathon

AI is changing how teams investigate incidents, detect threats, automate workflows, and build intelligent ...

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...