Splunk Search

Splunk Search
Community Activity
ToniHuynh
Hi Everyone,I passed a token which contain a file path with some special character into a search but it does not show...
by ToniHuynh Explorer in Splunk Search 09-02-2020
0 3
0
3
Khuzair81
Event1 - Ticket_no = username*, id=111 Event2 - Ticket_no = TKT123, Id =0 Is there any way to merge this 2 events to ...
by Khuzair81 Path Finder in Splunk Search 09-02-2020
0 4
0
4
ghildiya
When I run following query: .... | bin _time span=5m | timechart avg(responseTime)  (responseTime is an extracted fi...
by ghildiya Explorer in Splunk Search 09-02-2020
0 5
0
5
sphiwee
Good day everyone How can I visualize and edit this query to show the status of our servers, ONLINE/OFFLINE ?  
by sphiwee Contributor in Splunk Search 09-02-2020
0 1
0
1
owie6466
still a newbie, need help or ideas on how to check the status of a server if it's changed or stayed the same within t...
by owie6466 Explorer in Splunk Search 09-02-2020
0 2
0
2
firefox95
Hello Splunkers, I'm working on creating a DB health check report. Idea is to get the  error info when there is  a fa...
by firefox95 Explorer in Splunk Search 09-02-2020
0 2
0
2
iet_ashish
I have a lookup which is based on KV store. The lookup contains thousands of rows. We want to delete rows from this l...
by iet_ashish Explorer in Splunk Search 09-02-2020
0 3
0
3
JakubJ
Hello,I'm trying to chart typical week of our web application users based on data from last 4 weeks. Idea is, roughly...
by JakubJ Explorer in Splunk Search 09-02-2020
0 3
0
3
VS0909
For Anomaly detection, on string field, which method is better - Zscore or histogram? Please suggest
by VS0909 Communicator in Splunk Search 09-01-2020
0 3
0
3
burakatabay
Hi,I run two splunk search and results not come same.In the first search is with tstats ;timeprefix = yesterday| tsta...
by burakatabay Path Finder in Splunk Search 09-01-2020
0 2
0
2
SRG9
Hi all,I have X number of data models in the search head that I want to get usage information about.Is there a way to...
by SRG9 Explorer in Splunk Search 09-01-2020
0 2
0
2
ToniHuynh
Hi everyone,I have trouble to decode the token which contains some special character such as (). Below is my search a...
by ToniHuynh Explorer in Splunk Search 09-01-2020
0 1
0
1
nagarjuna119
Passing a token to dashboard using below is not working, dashboard is stuck on "search is waiting for input"message b...
by nagarjuna119 Engager in Splunk Search 09-01-2020
0 3
0
3
mistydennis
Hello - I need help extracting the "hostname" value into a separate field in the following string:   ABC1234: VPN Tun...
by mistydennis Communicator in Splunk Search 09-01-2020
0 3
0
3
splunkreal
Hello guys,I'm using index=... | join commonfield [search index=...] | sistats count as nbscheduled each minute on lo...
by splunkreal Influencer in Splunk Search 09-01-2020
0 5
0
5
fabiozihlmann
Hi I am trying to make a dashboard that searches events and extracts the correlationId from the event so I can displa...
by fabiozihlmann Engager in Splunk Search 09-01-2020
0 2
0
2
sidsinhad
I would like to search for events by certain fields, and the field may or may not exist. I want to show all results a...
by sidsinhad Engager in Splunk Search 09-01-2020
0 6
0
6
DeXteR
Hi I have some events in splunk which are of this form-Location: some value(same value can be there in multiple event...
by DeXteR New Member in Splunk Search 09-01-2020
0 2
0
2
adcom26
Helloi want to audit all activity in splunk (example : change settings( port udp/tcp configuration , reciving port co...
by adcom26 Explorer in Splunk Search 09-01-2020
0 1
0
1
dcsteve24
I have a lookup table which contains a varying low value and a high value for many rows, along with the desired value...
by dcsteve24 Explorer in Splunk Search 09-01-2020
0 4
0
4
klaudiac
Hi guys, I'm trying to create a saved search (instead of  typing the same search command few times a day) , but there...
by klaudiac Path Finder in Splunk Search 09-01-2020
0 3
0
3
ezmo1982
Hi,I have a search that is returning values from certain fields of an index. I would like the search to use a lookup ...
by ezmo1982 Path Finder in Splunk Search 09-01-2020
0 2
0
2
yogeshpunia05
In notepad editor the field offset and its size is known , how to extract fields based upon offset ? AS log pattern i...
by yogeshpunia05 Explorer in Splunk Search 09-01-2020
0 4
0
4
aditsss
Hi Everyone,I have a requirement like this.This is my search query.index=xyz sourcetype=yui source="user.log" process...
by aditsss Motivator in Splunk Search 09-01-2020
0 2
0
2
nc-mvw
I'm using Splunk for the first time, and I have an sql query giving the following output:2020-08-31 00:17:34.608, EMP...
by nc-mvw Engager in Splunk Search 09-01-2020
0 2
0
2
Get Updates on the Splunk Community!

From Raw Data to Executive-Ready Stories, Faster

Build Data Stories for Every Audience  A dashboard is rarely just a dashboard. It might be the view an ...

Guided Onboarding with Auto-schema Is Now Generally Available

  We are excited to announce the General Availability of Guided Onboarding with Auto-Schematization ...

ATTENTION: We’re Moving! (AGAIN!)

The Splunk Community Slack is undergoing a system migration to keep our workspace secure and ...