Splunk Search

Splunk Search
Community Activity
sangs8788
Hi,I have a below search result which shows Violators as red in color. Violators are more than 2 secI would like to g...
by sangs8788 Communicator in Splunk Search 12-03-2020
0 2
0
2
bwlm
Similar to the Regex to find a directory in a path question, how does one find the full directory path to an file (e....
by bwlm Path Finder in Splunk Search 12-02-2020
0 1
0
1
rileyken
I have these paths as sources for an index (the paths are linux file system paths) /usr/local/myfiles1/myfacilityA/...
by rileyken Explorer in Splunk Search 12-02-2020
0 3
0
3
dunyaelbasan
I have shown the queries I made with set diff and eval below. My aim is to compare the report of 07:00 to 07:00 of th...
by dunyaelbasan Path Finder in Splunk Search 12-02-2020
0 0
0
0
pstalin_
index=105261-cli sourcetype=show_processes_cpu pid=0| dedup deviceId| fields deviceId, idle, fiveMinutes| eval cpuLoa...
by pstalin_ Engager in Splunk Search 12-02-2020
0 1
0
1
wryanthomas
Search optimization question for y’all: We have an accelerated data model to try to drive improved performance for so...
by wryanthomas Contributor in Splunk Search 12-02-2020
0 1
0
1
elaozz
Hi all,I am trying to create a correlation search query for "data exfiltration via email" using email datamodelthe ru...
by elaozz New Member in Splunk Search 12-02-2020
0 0
0
0
jfhopkins2
Is there a SPL query pattern that can perform "hierarchical counting" beyond the two levels of depth outlined in thes...
by jfhopkins2 Engager in Splunk Search 12-02-2020
0 2
0
2
daisy_st
Hi all,I am using data from 3 different indexes. They contain events which can be attributed to specific transactions...
by daisy_st Loves-to-Learn Everything in Splunk Search 12-02-2020
0 2
0
2
ngwodo
I need help on splunk query that will count both filled and empty cells in excel spreadsheet differently  and give th...
by ngwodo Path Finder in Splunk Search 12-02-2020
0 6
0
6
wmyersas
Like the title says - how are individual searches in a multisearch handled?Are they distributed across any/all availa...
by wmyersas Builder in Splunk Search 12-02-2020
0 1
0
1
briansarmiento
Hi everyone, I'm trying to create a simple list with all the devices found on the logs from globalprotect. The deal i...
by briansarmiento Explorer in Splunk Search 12-02-2020
0 6
0
6
bl
Hello all, and thanks for the assistance ahead of time. How can I produce a list of all Splunk index names for indexe...
by bl Engager in Splunk Search 12-02-2020
0 3
0
3
marco_massari11
Hi,I have some syslog logs and I need to extract the first words of a field values. The field value starts like this:...
by marco_massari11 Communicator in Splunk Search 12-02-2020
0 3
0
3
Maycockk
Good morning all,I'm leveraging the transaction command in order to gather statistics around the duration of my reque...
by Maycockk Explorer in Splunk Search 12-02-2020
0 3
0
3
Burton_snow82
Hi all, I'm a new Splunk user and I would like to have some help from you.I have two query:First query:index=osb sour...
by Burton_snow82 Engager in Splunk Search 12-02-2020
0 4
0
4
ashukp
Hi, I have 2 different events. these 2 events can be identified by "Id".  I am trying to display it in table in the b...
by ashukp Loves-to-Learn Lots in Splunk Search 12-01-2020
0 4
0
4
aohls
I know through a workflow action I can add add a token value to a URL string. Is there any way to populate a value on...
by aohls Contributor in Splunk Search 12-01-2020
0 0
0
0
splunkcol
I understand that I should obtain results if I also consult only specifying the sourcetype and the rest of the search...
by splunkcol Builder in Splunk Search 12-01-2020
0 4
0
4
strehb18
Hello,I am trying to find the best way to change my search based on a token value that I will pass through an input. ...
by strehb18 Path Finder in Splunk Search 12-01-2020
0 2
0
2
jhampton_3rd
I'm trying to optimize this report to successfully run without errors.  It will currently run for 3-5 hours and grow ...
by jhampton_3rd Explorer in Splunk Search 12-01-2020
0 0
0
0
shashidharh
Hi,I was trying to add 2 rows in to a single row . After combining,I am getting results for 1st column .but not for 2...
by shashidharh Explorer in Splunk Search 12-01-2020
0 0
0
0
mpjjonker
Our system logs an event when it receives a message (with a unique key)Some time later our system also logs an event ...
by mpjjonker Explorer in Splunk Search 12-01-2020
0 1
0
1
Janani_Krish
Hi,I have written following query where a field consisting of 2 actions as below,Query:sourcetype="my_sourcetype" ses...
by Janani_Krish Path Finder in Splunk Search 12-01-2020
0 1
0
1
roderick001
My search is | inputlookup "edgarlog2.csv"The lookup file has no events attached to it, what is a way to add events f...
by roderick001 Explorer in Splunk Search 12-01-2020
0 4
0
4
Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...
Top Solution Authors