Splunk Search

Splunk Search
Community Activity
jadengoho
How can i route this kind of data to there proper index.Data:transaction_1transaction_2transaction_01 transaction_02t...
by jadengoho Builder in Splunk Search 11-24-2020
1 2
1
2
coderworld7939
I have the following Json object:object{<!-- -->Id 123 , status : {<!-- -->Id : 123value: NotKnown}Id 456 , status : {<!-- -->Id : 456value: ...
by coderworld7939 New Member in Splunk Search 11-24-2020
0 1
0
1
roderickjones
So we log API calls and response errors. However I'm having issues searching for the corrilating event from a log.  E...
by roderickjones Engager in Splunk Search 11-24-2020
1 1
1
1
marshad
HelloI have similar situation where I have 2 sources of data and in data I get filenames processed but filenaming con...
by marshad Explorer in Splunk Search 11-24-2020
0 3
0
3
yogeshpunia05
Can i change my dashboard to appear in Japanese language, it tried changing en_US to  ja-JP in URL that change the de...
by yogeshpunia05 Explorer in Splunk Search 11-24-2020
0 2
0
2
pleymort
Hello, I'd like to match the result of my main search with a list of values extracted from a CSV. So at the end of m...
by pleymort Explorer in Splunk Search 11-24-2020
0 5
0
5
superkara
The Splunk Fundamentals Part 1, Module 5 "Using Search" video says that both selecting and zooming into the timeline ...
by superkara Engager in Splunk Search 11-24-2020
0 1
0
1
muzeebm
Hi, Below is the information from one of my logs. "Information","ajp-nio-127.0.0.1-8016-exec-642","11/24/20","13:30:1...
by muzeebm Explorer in Splunk Search 11-24-2020
0 2
0
2
shinde0509
Want to count all events from specific indexes say abc, pqr and xyz only for span of 1h using tstatsand present it in...
by shinde0509 Explorer in Splunk Search 11-24-2020
0 5
0
5
VipeRafajzat
Hello!I am struggling to mask the last 4 digits of my numbers. | rex field&#61;FIELD_XY mode&#61;sed "s/[0-9#]{3}$/###/g" Wit...
by VipeRafajzat Explorer in Splunk Search 11-24-2020
0 4
0
4
Supriya
Could someone please help me convert epoch time to human readable time?"Date":1605030538646 
by Supriya Path Finder in Splunk Search 11-24-2020
0 8
0
8
VipeRafajzat
Hi All, I would like to search for a specific 7 character length of data from 2 tables. Within these 2 tables I have ...
by VipeRafajzat Explorer in Splunk Search 11-24-2020
0 2
0
2
Luninho
I have 2 searches:1) |dbxquery query&#61;"select member, gate, port from fo.member connection&#61;fo_member"2) |dbxquery quer...
by Luninho Explorer in Splunk Search 11-24-2020
0 1
0
1
j0hnn1ck
I put web request logs into Splunk. I did a lookup csv file that included suspicious user-agents characters like belo...
by j0hnn1ck Loves-to-Learn in Splunk Search 11-23-2020
0 4
0
4
Santoshku10
..........NOT[search logLevel IN (DEBUG,INFO)]........... it is not giving desired results. how can I search not IN a...
by Santoshku10 New Member in Splunk Search 11-23-2020
0 1
0
1
simpkins1958
The following SPL is returning multiple values for nmds_adapter_survey.iccid when the where clause is set to a value....
by simpkins1958 Contributor in Splunk Search 11-23-2020
2 1
2
1
hulahoop
Does the outputlookup command overwrite or append to the existing specified lookup file? The documentation does not ...
by hulahoop Splunk Employee Splunk Employee in Splunk Search 11-22-2020
7 8
7
8
chanthongphiob
I have a lookup table that runs every month of previous successful logins. For example: Account_Name, Host alpha, c...
by chanthongphiob Path Finder in Splunk Search 11-22-2020
1 3
1
3
santosh_hb
Hi, I have a task where I have to find all of the Heavy Forwarders that are currenly connected and sending the log d...
by santosh_hb Explorer in Splunk Search 11-22-2020
0 4
0
4
maitrifer
Hi All, I have a requirement I wanted to check which user is running a search. I need help in SPL query to get user a...
by maitrifer Engager in Splunk Search 11-22-2020
0 2
0
2
sammagana
Hello,So I am having some trouble parsing this json file to pull out the nested contents of the 'licenses'.  My curre...
by sammagana Loves-to-Learn in Splunk Search 11-21-2020
0 6
0
6
posix
hello,is there anyway to define a map / object. IE { '123': 'something',  '1234', 'anotherThing' } and then replace s...
by posix Observer in Splunk Search 11-21-2020
0 3
0
3
rreddy
I have a String is in the pattern:[substring1][substring2][substring3] Spark App State changed to FAILED. Total time ...
by rreddy Observer in Splunk Search 11-21-2020
0 1
0
1
highsplunker
Hey guys, How to Pass JSON or XML as parameters to custom Python script via Splunk REST API ? Example: I use REST A...
by highsplunker Contributor in Splunk Search 11-21-2020
0 5
0
5
rtakatsuka
I am trying to create a histogram plot, but I want to make the x-axis labels more readable. How do I go about doing t...
by rtakatsuka Engager in Splunk Search 11-20-2020
1 2
1
2
Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...
Top Solution Authors