Splunk Search

Splunk Search
Community Activity
loocayak
Hi there, I am not sure if I am missing out the obvious but I would pretty much like to be able to run stats count of...
by loocayak Observer in Splunk Search 12-03-2020
0 1
0
1
Glasses
Hi,I am looking for a bit guidance  breaking out multi-kv pairs in json logs.For example, I have json email logs wher...
by Glasses Builder in Splunk Search 12-03-2020
0 2
0
2
roderick001
Hi, I have this error message and it is stopping any data being shown in data summary, I can't add any data as .zip o...
by roderick001 Explorer in Splunk Search 12-03-2020
0 6
0
6
habiba29
HI,me. Am trying to do analysis of stacktraces in splunk for our RDMS. Essentially we can extract the spid for each s...
by habiba29 New Member in Splunk Search 12-03-2020
0 3
0
3
pduvofmr
Hi @ All,i know, ther are many diskussions about this topic, but nobody sent his solution MY CODE:<input type="text"...
by pduvofmr Path Finder in Splunk Search 12-03-2020
0 0
0
0
avasquez
Hi,I'm trying to configure a time-based lookup (temporal lookup) but it doesn't seem to be working as expected.1) The...
by avasquez Loves-to-Learn Lots in Splunk Search 12-03-2020
0 0
0
0
llacoste
Hi,So I've been facing some challenges with some of my users and I don't really know exactly how to tackle this.Despi...
by llacoste Path Finder in Splunk Search 12-03-2020
0 3
0
3
Jagdish
i am trying to extract http status from below event row text using search , but could not able to get status,event co...
by Jagdish Loves-to-Learn Lots in Splunk Search 12-03-2020
0 4
0
4
robayers
Here is a sample of the search, can anyone help?  The query works and returns data but errors out on the output filen...
by robayers Explorer in Splunk Search 12-03-2020
0 5
0
5
Hemant1
ERROR [monki_HMCatalogSyncJob::de.hybris.platform.servicelayer.internal.jalo.ServicelayerJob] -[J= U= C=] (monki) (00...
by Hemant1 Explorer in Splunk Search 12-03-2020
0 4
0
4
sangs8788
Hi,I have a below search result which shows Violators as red in color. Violators are more than 2 secScreenshot 2020-1...
by sangs8788 Communicator in Splunk Search 12-03-2020
0 2
0
2
bwlm
Similar to the Regex to find a directory in a path question, how does one find the full directory path to an file (e....
by bwlm Path Finder in Splunk Search 12-02-2020
0 1
0
1
rileyken
I have these paths as sources for an index (the paths are linux file system paths) /usr/local/myfiles1/myfacilityA/...
by rileyken Explorer in Splunk Search 12-02-2020
0 3
0
3
dunyaelbasan
I have shown the queries I made with set diff and eval below. My aim is to compare the report of 07:00 to 07:00 of th...
by dunyaelbasan Path Finder in Splunk Search 12-02-2020
0 0
0
0
pstalin_
index=105261-cli sourcetype=show_processes_cpu pid=0| dedup deviceId| fields deviceId, idle, fiveMinutes| eval cpuLoa...
by pstalin_ Engager in Splunk Search 12-02-2020
0 1
0
1
wryanthomas
Search optimization question for y’all: We have an accelerated data model to try to drive improved performance for so...
by wryanthomas Contributor in Splunk Search 12-02-2020
0 1
0
1
elaozz
Hi all,I am trying to create a correlation search query for "data exfiltration via email" using email datamodelthe ru...
by elaozz New Member in Splunk Search 12-02-2020
0 0
0
0
jfhopkins2
Is there a SPL query pattern that can perform "hierarchical counting" beyond the two levels of depth outlined in thes...
by jfhopkins2 Engager in Splunk Search 12-02-2020
0 2
0
2
daisy_st
Hi all,I am using data from 3 different indexes. They contain events which can be attributed to specific transactions...
by daisy_st Loves-to-Learn Everything in Splunk Search 12-02-2020
0 2
0
2
ngwodo
I need help on splunk query that will count both filled and empty cells in excel spreadsheet differently  and give th...
by ngwodo Path Finder in Splunk Search 12-02-2020
0 6
0
6
wmyersas
Like the title says - how are individual searches in a multisearch handled?Are they distributed across any/all availa...
by wmyersas Builder in Splunk Search 12-02-2020
0 1
0
1
briansarmiento
Hi everyone, I'm trying to create a simple list with all the devices found on the logs from globalprotect. The deal i...
by briansarmiento Explorer in Splunk Search 12-02-2020
0 6
0
6
bl
Hello all, and thanks for the assistance ahead of time. How can I produce a list of all Splunk index names for indexe...
by bl Engager in Splunk Search 12-02-2020
0 3
0
3
marco_massari11
Hi,I have some syslog logs and I need to extract the first words of a field values. The field value starts like this:...
by marco_massari11 Communicator in Splunk Search 12-02-2020
0 3
0
3
Maycockk
Good morning all,I'm leveraging the transaction command in order to gather statistics around the duration of my reque...
by Maycockk Explorer in Splunk Search 12-02-2020
0 3
0
3
Get Updates on the Splunk Community!

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

All Work and No Play? Not at .conf26! Unwind at These Evening Events

Between hands-on technical sessions, keynote reveals, and diving into live architectures, .conf26 is packed ...

Join the Hackathon at .conf26 and build a No-Code AI agent

Join us for the AI Agent Buildathon, an in-person, three-hour hands-on Hackathon where you’ll use Splunk Agent ...
Top Solution Authors