Splunk Search

Splunk Search
Community Activity
geoffmoraes
I am attempting to mask sensitive information using SEDCMD. However, it does not seem to take effect.I've run btool, ...
by geoffmoraes Path Finder in Splunk Search 10-30-2020
0 4
0
4
ronaldtanhj
Hi,I would like to compare the data of the previous month to the month before (i.e. now its October, so the default s...
by ronaldtanhj Path Finder in Splunk Search 10-30-2020
1 13
1
13
jgm1977
Hi,I'm in Splunk since August after 20 years working in SQL, a lot of new things and I need help.I've a daily cron jo...
by jgm1977 Engager in Splunk Search 10-30-2020
0 1
0
1
milanpatel7
Hi, bit new to splunk, looking for suggestions on one of my search queries:Here's some sample events that I receive{<!-- -->"...
by milanpatel7 New Member in Splunk Search 10-29-2020
0 0
0
0
TooManyQuestion
Hello.I'm trying to create a field for all events in a search. The field is a value from a inpulookup. There is no sh...
by TooManyQuestion Explorer in Splunk Search 10-29-2020
1 4
1
4
samlinsongguo
I have a search running fine by itself, index&#61;indexA user&#61;ABC123 | where isnotnull(USER_NAME_FROM_ACEE) | table USE...
by samlinsongguo Communicator in Splunk Search 10-29-2020
1 2
1
2
inventsekar
Hi All, one question related to community.splunk.com login page.. so on the login page, we get username textbox, afte...
by SplunkTrust SplunkTrust in Splunk Search 10-29-2020
0 6
0
6
eb1929
Ill start off i am newer to splunk....  I am using the following search index&#61;server source&#61;"WinEvent" EventCode&#61;1234...
by eb1929 Explorer in Splunk Search 10-29-2020
0 1
0
1
jjofret
Hi, I would like to know if there is some way to create a query where I can get more than 10.000 results when I used ...
by jjofret Explorer in Splunk Search 10-29-2020
0 1
0
1
iamsplunker
Hello Splunk Community,I have 2 reports trying to combine into 1. The fields are different to each other. Say Report ...
by iamsplunker Communicator in Splunk Search 10-29-2020
0 3
0
3
riotto
something like; [search index&#61; myindex source&#61;server.log earliest&#61;-360 latest&#61;-60 "
by riotto Path Finder in Splunk Search 10-29-2020
0 10
0
10
hillsw19
Hi All,I'm extremely new to Splunk and have been tasked to do the following:Perform a query against one host (Server1...
by hillsw19 Explorer in Splunk Search 10-29-2020
1 4
1
4
dstaulcu
I've been on the struggle bus with WinEventLog blacklist entries this week and stumbled upon the new xmlRegex modifie...
by dstaulcu Builder in Splunk Search 10-29-2020
0 2
0
2
Pmeiring
Hi Splunk Community I need some assistance with a Splunk alert, the search result provides exactly what I require but...
by Pmeiring Explorer in Splunk Search 10-29-2020
0 1
0
1
Luninho
I need show any value in every minute, but I only get value &gt; 0Search:| tstats count WHERE index&#61;XXXXX C_TXN_A IN (1,...
by Luninho Explorer in Splunk Search 10-29-2020
0 2
0
2
morethanyell
Hi,From my understanding, the param &#96;defaultGroup&#96; under the stanza &#96;[tcpout]&#96; in &#96;outputs.conf&#96; can be set to a comm...
by morethanyell Builder in Splunk Search 10-29-2020
0 5
0
5
maz38
Hi, I'm Alex from Franceas almost everyone here, I need some splunk guru ^^fields computer and user are in index1, co...
by maz38 New Member in Splunk Search 10-29-2020
0 7
0
7
ved08514
Hi,I am struggling with joining two indexes based on substring match.I have following indexes :index1 :having followi...
by ved08514 Explorer in Splunk Search 10-29-2020
0 11
0
11
JykkeDaMan
I have 2 different data set:1. host and prevStatus field with IDLE value2. server (same values as host) and server st...
by JykkeDaMan Path Finder in Splunk Search 10-29-2020
1 1
1
1
stwong
Hi all, Possible to join 2 search results like following? Set 1:_time field1field2field3 (common field) Set 2:_time  ...
by stwong Communicator in Splunk Search 10-29-2020
0 3
0
3
nivethainspire_
I ran the below query,index&#61;s sourcetype&#61;S_1 | search Gene&#61;"dow" OR Gene&#61;"x" OR Gene&#61;"ari" OR Gene&#61;"lia" OR Gene&#61;"SX"...
by nivethainspire_ Explorer in Splunk Search 10-29-2020
0 4
0
4
g_paternicola
Hello everyone,I was wondering if this kind of search is possible. I want to replace the text from my search which lo...
by g_paternicola Path Finder in Splunk Search 10-29-2020
0 4
0
4
Janani_Krish
Hello All,I am trying to find categorial outlier for all the emails sent from our environment with respect to its cou...
by Janani_Krish Path Finder in Splunk Search 10-29-2020
0 0
0
0
ebs
Hi,In the logs being ingested Splunk isn't automatically pulling out the action field, so I'm trying to create one fo...
by ebs Communicator in Splunk Search 10-28-2020
1 5
1
5
kscher
Greetings,Quoting fromhttps://docs.splunk.com/Documentation/Splunk/7.2.6/SearchReference/Commontimeformatvariables,  ...
by kscher Path Finder in Splunk Search 10-28-2020
0 2
0
2
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...