Splunk Search

Splunk Search
Community Activity
jiaqya
In my data, there are duplicate rows for a server, but their status is "active" or "deleted". Based on the field valu...
by jiaqya Builder in Splunk Search 09-02-2020
0 1
0
1
jiaqya
Need help with a situation.Example table below:column1,column2,column3,_time1,2,3,21st1,2,3,22nd1,2,3,23rd3,2,1,23rd4...
by jiaqya Builder in Splunk Search 09-02-2020
0 2
0
2
cshahfis
Here first drop down Dates will display last 7 days of date. When user select any one date, query will be executed an...
by cshahfis Engager in Splunk Search 09-02-2020
0 1
0
1
UMDTERPS
I have a search that does the following: | inputlookup system_scores.csv | search "big search goes here" | fields ser...
by UMDTERPS Communicator in Splunk Search 09-02-2020
0 1
0
1
motobeats
I would like to create a table of count metrics based on hour of the day. So average hits at 1AM, 2AM, etc. stats mi...
by motobeats Path Finder in Splunk Search 09-02-2020
0 9
0
9
marina_rovira
Hello all,I'm having issues achieving to extract fields from a sample in Splunk.I went to "extract fields", I have th...
by marina_rovira Contributor in Splunk Search 09-02-2020
0 6
0
6
ToniHuynh
Hi Everyone,I passed a token which contain a file path with some special character into a search but it does not show...
by ToniHuynh Explorer in Splunk Search 09-02-2020
0 3
0
3
Khuzair81
Event1 - Ticket_no = username*, id=111 Event2 - Ticket_no = TKT123, Id =0 Is there any way to merge this 2 events to ...
by Khuzair81 Path Finder in Splunk Search 09-02-2020
0 4
0
4
ghildiya
When I run following query: .... | bin _time span=5m | timechart avg(responseTime)  (responseTime is an extracted fi...
by ghildiya Explorer in Splunk Search 09-02-2020
0 5
0
5
sphiwee
Good day everyone How can I visualize and edit this query to show the status of our servers, ONLINE/OFFLINE ? sphiwee...
by sphiwee Contributor in Splunk Search 09-02-2020
0 1
0
1
owie6466
still a newbie, need help or ideas on how to check the status of a server if it's changed or stayed the same within t...
by owie6466 Explorer in Splunk Search 09-02-2020
0 2
0
2
firefox95
Hello Splunkers, I'm working on creating a DB health check report. Idea is to get the  error info when there is  a fa...
by firefox95 Explorer in Splunk Search 09-02-2020
0 2
0
2
iet_ashish
I have a lookup which is based on KV store. The lookup contains thousands of rows. We want to delete rows from this l...
by iet_ashish Explorer in Splunk Search 09-02-2020
0 3
0
3
JakubJ
Hello,I'm trying to chart typical week of our web application users based on data from last 4 weeks. Idea is, roughly...
by JakubJ Explorer in Splunk Search 09-02-2020
0 3
0
3
VS0909
For Anomaly detection, on string field, which method is better - Zscore or histogram? Please suggest
by VS0909 Communicator in Splunk Search 09-01-2020
0 3
0
3
burakatabay
Hi,I run two splunk search and results not come same.In the first search is with tstats ;timeprefix = yesterday| tsta...
by burakatabay Path Finder in Splunk Search 09-01-2020
0 2
0
2
SRG9
Hi all,I have X number of data models in the search head that I want to get usage information about.Is there a way to...
by SRG9 Explorer in Splunk Search 09-01-2020
0 2
0
2
ToniHuynh
Hi everyone,I have trouble to decode the token which contains some special character such as (). Below is my search a...
by ToniHuynh Explorer in Splunk Search 09-01-2020
0 1
0
1
nagarjuna119
Passing a token to dashboard using below is not working, dashboard is stuck on "search is waiting for input"message b...
by nagarjuna119 Engager in Splunk Search 09-01-2020
0 3
0
3
mistydennis
Hello - I need help extracting the "hostname" value into a separate field in the following string:   ABC1234: VPN Tun...
by mistydennis Communicator in Splunk Search 09-01-2020
0 3
0
3
splunkreal
Hello guys,I'm using index=... | join commonfield [search index=...] | sistats count as nbscheduled each minute on lo...
by splunkreal Influencer in Splunk Search 09-01-2020
0 5
0
5
fabiozihlmann
Hi I am trying to make a dashboard that searches events and extracts the correlationId from the event so I can displa...
by fabiozihlmann Engager in Splunk Search 09-01-2020
0 2
0
2
sidsinhad
I would like to search for events by certain fields, and the field may or may not exist. I want to show all results a...
by sidsinhad Engager in Splunk Search 09-01-2020
0 6
0
6
DeXteR
Hi I have some events in splunk which are of this form-Location: some value(same value can be there in multiple event...
by DeXteR New Member in Splunk Search 09-01-2020
0 2
0
2
adcom26
Helloi want to audit all activity in splunk (example : change settings( port udp/tcp configuration , reciving port co...
by adcom26 Explorer in Splunk Search 09-01-2020
0 1
0
1
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...
Top Solution Authors