Splunk Search

Splunk Search
Community Activity
rangarbus
I am new to splunk.  I have a need to get the visualization which shows the field of the corresponding stats value. D...
by rangarbus Path Finder in Splunk Search 09-14-2020
0 4
0
4
rogercruz
I would like to create a table that displays the first and last event from a duplicate set of events.  A duplicate ru...
by rogercruz Engager in Splunk Search 09-13-2020
0 3
0
3
mlevsh
One of our teams is running  Java script that uses REST API to fetch data from Splunk Cloud using the search.They run...
by mlevsh Builder in Splunk Search 09-13-2020
0 4
0
4
SplunkySplunk
I`m trying to remove a hash string from my output-"Example hash is 3ernksMt7b3EzKwHuW4papuEFtvePZtDs9CQFeVYy57= will ...
by SplunkySplunk Explorer in Splunk Search 09-13-2020
0 3
0
3
hburton
I'm sorry for the terrible subject. I can't think of a simplified title for what I'm trying to do.I'm trying to graph...
by hburton Explorer in Splunk Search 09-13-2020
0 3
0
3
shrirangphadke
Hi, I want to calculate factorial of a number in eval for calculating Poisson value. Please let me know if it is pos...
by shrirangphadke Path Finder in Splunk Search 09-13-2020
1 7
1
7
pjtbasu
Hi, I've a field with name URL and values are like this -- https://community.splunk.com/t5/forums/postpage/2132123131...
by pjtbasu Explorer in Splunk Search 09-13-2020
0 3
0
3
syedabuthahir
Hi All,I want to extract one particular filed under the description column but when i tried to extract the field i am...
by syedabuthahir Explorer in Splunk Search 09-12-2020
0 2
0
2
mccobalt96
I would like to modify an existing dashboard to limit the Linux package that is being reported.  Specifically, I want...
by mccobalt96 New Member in Splunk Search 09-12-2020
0 4
0
4
tefa627
How do I round these numbers with this search?index=net_auth_long | eval time_hour=strftime(_time,"%H")| chart eval(c...
by tefa627 Explorer in Splunk Search 09-12-2020
0 4
0
4
tefa627
I am trying to get each value to be divided by certain number (x). So if x=7, the first value would be 138.index=net_...
by tefa627 Explorer in Splunk Search 09-12-2020
0 3
0
3
DanK
Is it possible to filter search result rows by a search expression which can be applied to all fields of a row?Accord...
by DanK Explorer in Splunk Search 09-12-2020
0 10
0
10
VS0909
I got below warning:"'anomalydetection' command: limit for values of field 'message' reached. Some values may have be...
by VS0909 Communicator in Splunk Search 09-11-2020
0 1
0
1
nagar57
I want my nested JSON to be parsed only at 1st level instead of parsing all the nested parts. I have below JSON: { "...
by nagar57 Communicator in Splunk Search 09-11-2020
0 1
0
1
Abskal
Hi Splunkers, Can anyone please help with search time line break for the following log.  {"audits":[{"id":"000","vers...
by Abskal Observer in Splunk Search 09-11-2020
0 6
0
6
bpot
Hi all,I'm new to splunk and i had hard time extracting fields  using regex for the following example :Class (six, se...
by bpot Engager in Splunk Search 09-11-2020
0 2
0
2
frbuser
I want to check if a field contains a specific value and the field is multivalue. What is the most efficient way to ...
by frbuser Path Finder in Splunk Search 09-11-2020
0 6
0
6
krvamsireddy
Hi ,how to change the below raw time field to yyyy-mm-dd hh:mm:ss2020-09-09T18:21:12.2685607Zam using the below query...
by krvamsireddy Explorer in Splunk Search 09-11-2020
0 6
0
6
jw44250
I want to get the log size in MB and GB. I have used this command index=index1 |eval raw_len=(len(_raw)/1028) | stat...
by jw44250 New Member in Splunk Search 09-11-2020
0 6
0
6
JacketPotato
Hi,I am having issues with dbx queriesI created a dashboard with dbx queries, I can run the queries, dashboard displa...
by JacketPotato New Member in Splunk Search 09-11-2020
0 2
0
2
kaeleyt
Hi all, I have a request from a tenant in our environment that requires us to create a dashboard where each column is...
by kaeleyt Path Finder in Splunk Search 09-10-2020
0 9
0
9
raj11
I have two searches below:   index=dev 'error' index=prod 'error'   I want to run the above searches together for the...
by raj11 Explorer in Splunk Search 09-10-2020
0 10
0
10
rkishoreqa
Hi team, How can I add the below two queries into one single query and present in a single table.query 1 : index="dev...
by rkishoreqa Communicator in Splunk Search 09-10-2020
0 3
0
3
net1993
HelloI download cisco asa add-on from splunk base and in default folder/transforms.conf some regexes cannot be used i...
by net1993 Path Finder in Splunk Search 09-10-2020
0 1
0
1
cquinney
Greetings Splunkers,I have a lookup file that has a list of set jobs with a frequency timestamp (e.g. Mon-Fri @ 3:30)...
by cquinney Communicator in Splunk Search 09-10-2020
0 4
0
4
Get Updates on the Splunk Community!

Optimize AI at Scale: Must-Attend Observability Sessions at .conf26

conf26   With nearly 70 breakout sessions on the docket, the .conf26 Observability track is designed to help ...

How much can you really learn in 3 minutes?

Observability can certainly be hard to understand – there's a lot of jargon and buzzwords and it seems to ...

Event Series: The Agentic SOC: Trust Before Autonomy

AI is fundamentally changing security operations, but true progress requires more than just automation—it ...