Splunk Search

Splunk Search
Community Activity
sammagana
Hello,So I am having some trouble parsing this json file to pull out the nested contents of the 'licenses'.  My curre...
by sammagana Loves-to-Learn in Splunk Search 11-21-2020
0 6
0
6
posix
hello,is there anyway to define a map / object. IE { '123': 'something',  '1234', 'anotherThing' } and then replace s...
by posix Observer in Splunk Search 11-21-2020
0 3
0
3
rreddy
I have a String is in the pattern:[substring1][substring2][substring3] Spark App State changed to FAILED. Total time ...
by rreddy Observer in Splunk Search 11-21-2020
0 1
0
1
highsplunker
Hey guys, How to Pass JSON or XML as parameters to custom Python script via Splunk REST API ? Example: I use REST A...
by highsplunker Contributor in Splunk Search 11-21-2020
0 5
0
5
rtakatsuka
I am trying to create a histogram plot, but I want to make the x-axis labels more readable. How do I go about doing t...
by rtakatsuka Engager in Splunk Search 11-20-2020
1 2
1
2
topperud
Hi all,  I am trying to create a timechart that divides the data by 12 hour shifts. I have| timechart span = 12h (fol...
by topperud Engager in Splunk Search 11-20-2020
0 2
0
2
matiasruiz
for GDPR compliance I need to modify a ClientIP field that is already indexed (4+ year so far) and wipe it.Was thinki...
by matiasruiz Engager in Splunk Search 11-20-2020
0 4
0
4
infotork
There are two sourcetypes , sourcetype=A  sourcetype=B  and we have extracted a field "login" in both sourcetypes 1. ...
by infotork Explorer in Splunk Search 11-20-2020
0 1
0
1
gavinsopra
I have a query similar to the following which we are using to capture information about email traffic between certain...
by gavinsopra Engager in Splunk Search 11-20-2020
0 6
0
6
Anon4Now
Hi,I am trying to craft a query that will look for Windows devices that have been rebooted and then have accessed a c...
by Anon4Now Loves-to-Learn Lots in Splunk Search 11-20-2020
0 1
0
1
potnuru
My requirement is just to skip few lines of SPL query if a certain condition is met. Or some kind of If-Else for runn...
by potnuru Path Finder in Splunk Search 11-20-2020
0 12
0
12
veerendra_modi
I have a index say index1 having Air Details and ServerName of which some Air is missing for some serverNames.I have ...
by veerendra_modi Loves-to-Learn in Splunk Search 11-20-2020
0 1
0
1
RamG
Splunk would not automatically extract fields from my application log files that have Key-Value Pairs (KVP) delimited...
by RamG New Member in Splunk Search 11-20-2020
0 1
0
1
Supriya
Hi,I want to extract the fields Name, Version, VendorName, usesLicensing, LicenseType, ExpiractDateString, LicenseKey...
by Supriya Path Finder in Splunk Search 11-20-2020
0 6
0
6
LogUx
Hello ,I am not getting any result while executing below query. Can you please help me to know what i am doing wrong ...
by LogUx Motivator in Splunk Search 11-20-2020
0 1
0
1
hayduk
Hi, i try to find the correct way to query a lookup file based on a where clause with CIDRMATCH. I have the followi...
by hayduk Path Finder in Splunk Search 11-20-2020
0 6
0
6
kiran331
Hi How to edit props.conf and transforms.conf to exclude the windows events with event Codes 4634 at indexing time a...
by kiran331 Builder in Splunk Search 11-20-2020
0 5
0
5
huajieyangdbs
I am getting following PCF metric log every 15 seconds. How should I visualize these data?I need to do a calculation ...
by huajieyangdbs Observer in Splunk Search 11-20-2020
0 1
0
1
kirrusk
Hello all,I have a requirement below :I'm pushing csv file(not pushing regularly) data to splunk index using splunk f...
by kirrusk Communicator in Splunk Search 11-19-2020
0 3
0
3
Anush
Hi All,How do we all the values for a single field?Currently, the chart is displayed with the LoginName(x axis) with ...
by Anush Engager in Splunk Search 11-19-2020
0 6
0
6
christinaef07
Hi everyone! In my logs coming in, I log the duration for a job to complete, for several different jobs. Example of d...
by christinaef07 Loves-to-Learn Everything in Splunk Search 11-19-2020
0 1
0
1
antonio147
I did a search of the last 3 months on fields A = "xxx" and B = "yyy" and it has to return me 2 other fields, C and D...
by antonio147 Communicator in Splunk Search 11-19-2020
0 9
0
9
Peely
When I first setup Splunk on my local machine (Playing around with it as I learn it), I could search for '*' and get ...
by Peely Explorer in Splunk Search 11-19-2020
0 2
0
2
jip31
HelloThe search below returns results but the where condition doesnt works `wire` | eval USERNAME=upper(USERNAME) |...
by jip31 Motivator in Splunk Search 11-19-2020
0 2
0
2
splunk_a_tron
Hello All,I am new to Splunk and ran into my first wall when attempting to omit search results using tags. Any help o...
by splunk_a_tron Engager in Splunk Search 11-19-2020
0 14
0
14
Get Updates on the Splunk Community!

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...