Splunk Search

Splunk Search
Community Activity
javier_reina
Hello,we are trying to parse logs from a dlink DXS-3600 but we are not able to find the correct format, we have tried...
by javier_reina Explorer in Splunk Search 10-15-2020
0 1
0
1
splunklearner12
I have a list of top 10 users, but I also want the top 3 IP addresses used by those users in a table. Some users will...
by splunklearner12 Path Finder in Splunk Search 10-15-2020
0 4
0
4
codedtech
I have something like 20+ alerts that give my team telemetric data on our ESX and Storage clusters. We collect our me...
by codedtech Path Finder in Splunk Search 10-15-2020
0 3
0
3
dav_muel
I have logs like this:user=userA ip=1.1.1.1 ...user=userA ip=1.1.1.2 ...user=userB ip=1.1.2.1 ...user=userB ip=1.1.2....
by dav_muel Engager in Splunk Search 10-15-2020
0 3
0
3
sravipati
Hi all,Using Splunk cloud I'm trying to look up the time difference between when a message is received from a sender ...
by sravipati New Member in Splunk Search 10-15-2020
0 2
0
2
pitmod
Hello,In my lookup I have the following data:_time='2020-10-21 15:00' usage='1' host='A'_time='2020-10-26 15:00' usag...
by pitmod Explorer in Splunk Search 10-15-2020
0 1
0
1
CREVITCH
I am executing the following search and it is taking a long time to execute. Is there a way to save the results of p...
by CREVITCH Path Finder in Splunk Search 10-15-2020
0 11
0
11
arjit
Hi All, I am populating the summary index from yesterdays data via tstats count on a Data model and inspite of adding...
by arjit Path Finder in Splunk Search 10-15-2020
0 4
0
4
Sasquatchatmars
Hi all,I made a search where I use a regular expression to extract the username from the email address because we not...
by Sasquatchatmars Communicator in Splunk Search 10-15-2020
0 2
0
2
moogmusic
Hi, I'm trying to search for an example event of different types by field so that I can see the detail of different t...
by moogmusic Path Finder in Splunk Search 10-15-2020
0 2
0
2
mah
hi,My issue is I have a table like that :field 1field 2 10212210 I want to create an third column that create the res...
by mah Builder in Splunk Search 10-15-2020
0 6
0
6
djroks89
Hi Team,I have a requirement that i'm writing a join query.Query-1 returns id ,time55600072020-09-27 12:30:18.915 Que...
by djroks89 Explorer in Splunk Search 10-14-2020
1 3
1
3
ryankrieger
I have data coming from an Avaya phone system that provides me the end time of the event and the duration, I am creat...
by ryankrieger Loves-to-Learn in Splunk Search 10-14-2020
0 6
0
6
hyddenlynx
I am building a table displayed in a splunk dashboard that needs a complicated query and I was hoping to get a quick ...
by hyddenlynx Engager in Splunk Search 10-14-2020
0 1
0
1
CyberCyberSec
Hello, I am trying to create a splunk alert to trigger when it detects an anomaly in the firewall logs based on IDS s...
by CyberCyberSec Loves-to-Learn in Splunk Search 10-14-2020
0 0
0
0
mbasharat
Hi,I have data in XML format. Out of many fields that I have extracted, there is another field name pluginText which ...
by mbasharat Builder in Splunk Search 10-14-2020
0 4
0
4
EH
Hi community, using Splunk for a ~month now and need some help, If done correctly, I have the realtime volume/depot. ...
by EH Explorer in Splunk Search 10-14-2020
0 3
0
3
CarbonCriterium
I would like to apply a formula to each of the values in the field "stocks."  I have been able to show this in a char...
by CarbonCriterium Path Finder in Splunk Search 10-14-2020
0 5
0
5
Ning
Hi alli would like to ask how we can use a lookup table to whitelist a set of src and dest. sample trafficsrc 1.1.1.1...
by Ning Engager in Splunk Search 10-14-2020
0 0
0
0
raventura
Hi All,have this dilemma where source counts does not match the count inserted in summary index. sample query that wa...
by raventura Observer in Splunk Search 10-14-2020
0 3
0
3
jackpal
I am using the nix agent to gather disk space.  I only collect "df" information once per day. I want to be able to pr...
by jackpal Path Finder in Splunk Search 10-14-2020
0 1
0
1
pravinvram
How do i execute macros in rest API , example :curl -ku user:pass https://<url> -d search="`macro name` | table data1...
by pravinvram Engager in Splunk Search 10-14-2020
0 3
0
3
cheriemilk
Hi team,1. I have below query <base query here>| rex field=_raw "POST\s+(?<RequestURL>.*)HTTP.*company\=(?<CMID>.*?)\...
by cheriemilk Path Finder in Splunk Search 10-14-2020
0 10
0
10
skhan28
I have CSV inventory  file which is dynamic and same needs to updated in splunk manually, Is there a way  to integrat...
by skhan28 Explorer in Splunk Search 10-14-2020
0 4
0
4
rkd
Hello,I am trying to calculate the browse time and bandwith usage of users by looking at the log files of the firewal...
by rkd Loves-to-Learn Everything in Splunk Search 10-13-2020
0 2
0
2
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Shape the Future of Splunk: Join the Product Research Lab!

Join the Splunk Product Research Lab and connect with us in the Slack channel #product-research-lab to get ...