Splunk Search

Splunk Search
Community Activity
rizzo75
I am trying to extract field names and values from SQL logs. IE - “… INSERT INTO table (COL1, COL2) VALUES ('VAL1', '...
by rizzo75 Path Finder in Splunk Search 11-18-2020
1 11
1
11
erineoshea2
Hello all, I am a newer Splunk user and I am trying to sort the following rows:Level:LowModerateHighNullTotal But I w...
by erineoshea2 New Member in Splunk Search 11-18-2020
0 1
0
1
sakanet
Hi, I am trying the following search syntax in Splunk to build out a report of our top 25 riskiest systems. But when ...
by sakanet Explorer in Splunk Search 11-18-2020
1 5
1
5
xyz123
Hello,What I want to get  a table with all fields populated with their last values by time range.For each form I have...
by xyz123 Explorer in Splunk Search 11-18-2020
1 12
1
12
bcjammer03
I'm trying to create a query where I get results of a specific user triggering two of the same alerts. Is there a way...
by bcjammer03 Explorer in Splunk Search 11-18-2020
0 4
0
4
daniel_splunk
Have defined a new non-admin user and already add list_settings capability as instructed by the Splunk document here...
by daniel_splunk Splunk Employee Splunk Employee in Splunk Search 11-18-2020
0 5
0
5
kenruppe
It seems ridiculous that I can't remove a label. Example: the firewall icon has "Firewall" right below. Really? It's ...
by kenruppe Explorer in Splunk Search 11-18-2020
0 7
0
7
BernardEAI
HiI'm trying to make use of the Forecast Chart Visualisation. I have added this visualisation to my dashboard, but I'...
by BernardEAI Communicator in Splunk Search 11-18-2020
0 1
0
1
frozenpy
Hello,I trying to perform a subquery on an else statement, I believe that the way I'm trying to do it is not right. I...
by frozenpy Explorer in Splunk Search 11-18-2020
0 5
0
5
user2020dy
When I create simple basic search (throught index) for events, I get such amount of resultsAll events are tagged, and...
by user2020dy Path Finder in Splunk Search 11-18-2020
0 0
0
0
donB
Below is a sample log message.  Each message will have string "500 Server Error for HTTP" and i need to extract 3 fie...
by donB Loves-to-Learn Lots in Splunk Search 11-18-2020
0 1
0
1
rahul2gupta
Hi @gcusello ,I'm getting no results when I run any queries in splunk.The following error I'm getting.Can you please ...
by rahul2gupta Path Finder in Splunk Search 11-17-2020
0 4
0
4
ronport2020
I'm trying to do the following search based on my index 'transactions' and field name called 'customers' for a custom...
by ronport2020 New Member in Splunk Search 11-17-2020
0 1
0
1
dmillis
Consider a field value which contains a list of comma-separated field names, such as 'fieldList' in this example:| ma...
by dmillis Splunk Employee Splunk Employee in Splunk Search 11-17-2020
0 6
0
6
Patrick_Peeters
I have a JSON input with different types, all representing a data point at a certain time. I have the start time of t...
by Patrick_Peeters Splunk Employee Splunk Employee in Splunk Search 11-17-2020
0 1
0
1
ny34940
What I want to do is add color formatting to multiple columns of a table depending upon the name of the columns. ...
by ny34940 Path Finder in Splunk Search 11-17-2020
0 11
0
11
jboustead
Is it possible to run a search that will only include all the events for that day after a certain time? (using the ti...
by jboustead Explorer in Splunk Search 11-17-2020
0 2
0
2
Hemant1
0
2
Sasquatchatmars
Hi all,I have been making a search to know which account is in which groups using ldapsearch. I succesfully made the ...
by Sasquatchatmars Communicator in Splunk Search 11-17-2020
0 2
0
2
jboustead
Please help create a Regex that will only take the 4 characters/number after MTCP from below events?For example below...
by jboustead Explorer in Splunk Search 11-17-2020
0 1
0
1
SausagePizzza
Hello, I'm trying to get a few things from my tstats search:count for last hourcount for yesterdayUse the two counts ...
by SausagePizzza Engager in Splunk Search 11-17-2020
1 1
1
1
tefa627
 I am trying to compare 2 fields in this xml.  I have a field named avg that I want to compare with the other columns...
by tefa627 Explorer in Splunk Search 11-17-2020
0 2
0
2
Ralf
Hi there,I did already several trials with search commands like "eval _time=strptime(time,"%Y-%m-%dT%H:%M:%S")"but wa...
by Ralf Explorer in Splunk Search 11-17-2020
0 10
0
10
dordavid
Hey, i want to search a field and get all the results which contain a value from another field.For example:  I have 2...
by dordavid Explorer in Splunk Search 11-17-2020
1 4
1
4
Nidd
Hi,I have the following log from which I need to extract 2 fields: [INFO ] 2020-11-16 20:52:30,729 (http-nio-8085-exe...
by Nidd Path Finder in Splunk Search 11-17-2020
0 5
0
5
Get Updates on the Splunk Community!

Casting Call: Compete in Cyber Games

Lights, Camera, SecOps: Apply to Compete in Cyber Games     Think you have what it takes to beat the clock? ...

Data Management Digest – June 2026

Welcome to the June 2026 edition of Data Management Digest! This month’s update is short and sweet, with a ...

Think Like an Architect: Introducing the Splunk Certified Cybersecurity Defense ...

In cybersecurity, defenders respond to threats. Architects design the systems that stop them.    As ...