Splunk Search

Splunk Search
Community Activity
hyddenlynx
I am building a table displayed in a splunk dashboard that needs a complicated query and I was hoping to get a quick ...
by hyddenlynx Engager in Splunk Search 10-14-2020
0 1
0
1
CyberCyberSec
Hello, I am trying to create a splunk alert to trigger when it detects an anomaly in the firewall logs based on IDS s...
by CyberCyberSec Loves-to-Learn in Splunk Search 10-14-2020
0 0
0
0
mbasharat
Hi,I have data in XML format. Out of many fields that I have extracted, there is another field name pluginText which ...
by mbasharat Builder in Splunk Search 10-14-2020
0 4
0
4
EH
Hi community, using Splunk for a ~month now and need some help, If done correctly, I have the realtime volume/depot. ...
by EH Explorer in Splunk Search 10-14-2020
0 3
0
3
CarbonCriterium
I would like to apply a formula to each of the values in the field "stocks."  I have been able to show this in a char...
by CarbonCriterium Path Finder in Splunk Search 10-14-2020
0 5
0
5
Ning
Hi alli would like to ask how we can use a lookup table to whitelist a set of src and dest. sample trafficsrc 1.1.1.1...
by Ning Engager in Splunk Search 10-14-2020
0 0
0
0
raventura
Hi All,have this dilemma where source counts does not match the count inserted in summary index. sample query that wa...
by raventura Observer in Splunk Search 10-14-2020
0 3
0
3
jackpal
I am using the nix agent to gather disk space.  I only collect "df" information once per day. I want to be able to pr...
by jackpal Path Finder in Splunk Search 10-14-2020
0 1
0
1
pravinvram
How do i execute macros in rest API , example :curl -ku user:pass https://<url> -d search="`macro name` | table data1...
by pravinvram Engager in Splunk Search 10-14-2020
0 3
0
3
cheriemilk
Hi team,1. I have below query <base query here>| rex field=_raw "POST\s+(?<RequestURL>.*)HTTP.*company\=(?<CMID>.*?)\...
by cheriemilk Path Finder in Splunk Search 10-14-2020
0 10
0
10
skhan28
I have CSV inventory  file which is dynamic and same needs to updated in splunk manually, Is there a way  to integrat...
by skhan28 Explorer in Splunk Search 10-14-2020
0 4
0
4
rkd
Hello,I am trying to calculate the browse time and bandwith usage of users by looking at the log files of the firewal...
by rkd Loves-to-Learn Everything in Splunk Search 10-13-2020
0 2
0
2
kyu
I'm trying to read an array field from database query using dbxquery, and got error "failed to load column with type ...
by kyu New Member in Splunk Search 10-13-2020
0 0
0
0
kiranstar24
We have an alert configured to send email when the number of results is >20 in 5min but since this is a timechart bas...
by kiranstar24 Loves-to-Learn Lots in Splunk Search 10-13-2020
0 7
0
7
sphiwee
Can i get a regular expression to show TSK KUBHEKA v2.0.70 from the below extract2020-10-13 17:24:15 [bp-[xxxxxxxxx]-...
by sphiwee Contributor in Splunk Search 10-13-2020
0 4
0
4
SaiN04
Hi I am new to Splunk. I wanted to know how to add a new service into a already created ITSI Splunk dashboard. I need...
by SaiN04 New Member in Splunk Search 10-13-2020
0 0
0
0
pitmod
Hello,I have the following databook="title1" reader="reader1"book="title1" reader="reader1"book="title1" reader="read...
by pitmod Explorer in Splunk Search 10-13-2020
0 2
0
2
jacortijo
Hi,I am building a dashboard where I have an multi-select input  called locations, which is populated with a query vi...
by jacortijo Explorer in Splunk Search 10-13-2020
0 8
0
8
Nextbeat
Our department has created a Splunk integration that performs API lookups against IPQualityScore.  One of our searche...
by Nextbeat Path Finder in Splunk Search 10-12-2020
0 1
0
1
Marco
Good Morning,I am currently trying to extract a field from  a variable.The variable name is command, and the value th...
by Marco Communicator in Splunk Search 10-12-2020
0 1
0
1
BornConfused
My initial log looks something like:The quick brown fox jumps over the lazy dog, and it jumped in 23092 seconds.Tryin...
by BornConfused Engager in Splunk Search 10-12-2020
0 4
0
4
praveenvvn
hello, looking for help on a search query using lookup tablecol1,col2,col3aaa,100,a@a.combbb,200,b@b.comi need to use...
by praveenvvn Explorer in Splunk Search 10-12-2020
0 4
0
4
knadav
Hi Guys,I'm trying to match a result from one search to an Inputlookup.The original search contains "spath" command b...
by knadav Explorer in Splunk Search 10-12-2020
1 9
1
9
jip31
HelloI use the search below in order to display the list of HOSTNAME which have a SITE field that matches  | inputloo...
by jip31 Motivator in Splunk Search 10-12-2020
0 6
0
6
Stephen11
I got a variable called _host_name which = usscic-secfio102.na.xxx.com.  I need to derive a variable called host_shor...
by Stephen11 Explorer in Splunk Search 10-11-2020
0 2
0
2
Get Updates on the Splunk Community!

Unlocking Unified Insights: New Gigamon Federated Search App for Splunk

In today’s data-heavy environment, organizations are caught in a data distribution dilemma. As data volumes ...

GA: New Data Management App in Splunk Platform

Streamlining Data Management: Introducing a unified experience in Splunk Managing data at scale shouldn’t feel ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...