Splunk Search

Splunk Search
Community Activity
MonkeyK
I have begun to accumulate some reference information about my company's AWS environment based on a bunch of queries....
by MonkeyK Builder in Splunk Search 08-20-2020
0 2
0
2
benhooper
I've made the following multi-series line chart (details) where it makes much more sense to have the Y axis on the ri...
by benhooper Communicator in Splunk Search 08-20-2020
0 0
0
0
FraserC1
Hi, I am trying to search through some patch data to find percentage of devices that have been patched against the to...
by FraserC1 Path Finder in Splunk Search 08-20-2020
0 9
0
9
priya0709
I am using below query to fetch Incident from the subject line:—rex field=subject max_match=0 “(?<Incident>INC\d+)”ho...
by priya0709 Path Finder in Splunk Search 08-20-2020
0 5
0
5
jerinvarghese
Hi All,need help in 2 regex problem.1. Filtering Class_Type value from the  _raw . "Ticket_ID": "8158", Please see Wo...
by jerinvarghese Communicator in Splunk Search 08-20-2020
0 1
0
1
henryw374
Hi,Using the api I am submitting searches to splunk. Sometimes, the jobs remain in queued state forever. I can see wh...
by henryw374 New Member in Splunk Search 08-20-2020
0 0
0
0
subhrangshu
Hello,Is it possible to populate drop down in Dashboard with eval values. I have a query as given below which returns...
by subhrangshu Explorer in Splunk Search 08-20-2020
0 2
0
2
mah
Hi,My issue is : I have a query which contains a "NetworkIterface" field: eni-12345, eni-6789, ...I have a lookup whi...
by mah Builder in Splunk Search 08-20-2020
0 1
0
1
djhowie
I have a search that compares the number of events for the current day, for a given combination of fields, to the dai...
by djhowie New Member in Splunk Search 08-19-2020
0 7
0
7
3DGjos
Hello, I need to make a report with 2 different sourcetypes.For the first sourcetype, lets call it st1, I have the li...
by 3DGjos Communicator in Splunk Search 08-19-2020
0 3
0
3
ChioNeng
Hello all, I need to get the total each column of the date and create a new column that showing the date column base ...
by ChioNeng Explorer in Splunk Search 08-19-2020
0 2
0
2
nitinpa
I have a CSV (domains.csv) that contain the list of domains. I have uploaded into Splunk and get the result using [| ...
by nitinpa Observer in Splunk Search 08-19-2020
0 6
0
6
iomega311
I am trying to understand how to remove results where "field_a" and "field_a" each contain a certain value together i...
by iomega311 Explorer in Splunk Search 08-19-2020
0 2
0
2
Marco
Hello Guys,I'm trying to plot multiple values onto a time chart. These values are collected through a Where Like stat...
by Marco Communicator in Splunk Search 08-19-2020
0 7
0
7
vinod0313
I have a drill down in my dashboard.When I select any choice from the drill down other two panels(reports) will appea...
by vinod0313 Explorer in Splunk Search 08-19-2020
0 1
0
1
prabhu77749
Hi rteam, We have too many index created and now planning to have different retention duration  based on sourcetypes....
by prabhu77749 Explorer in Splunk Search 08-19-2020
0 1
0
1
BookerT14
Before a change was made, data was originally being sent to Splunk in the example of { %a | %b | %c | %d }. Now after...
by BookerT14 Engager in Splunk Search 08-19-2020
0 4
0
4
performancemoni
Hello, We are having some issues finalizing the installation of our Splunk environment. We have 2 Linux servers: 1 Se...
by performancemoni Path Finder in Splunk Search 08-19-2020
0 1
0
1
subhrangshu
Hello,I am trying to combine couple of fields data separated by a dash. Tried few options but could not get the expec...
by subhrangshu Explorer in Splunk Search 08-19-2020
0 2
0
2
danl
I've been unable to get a boolean value extracted from JSON written to Splunk. The data looks like this:   build: {<!-- -->  ...
by danl Explorer in Splunk Search 08-19-2020
0 5
0
5
CarbonCriterium
I have four versions of a nearly identical search.  The last one returns a completely different result.  What is it a...
by CarbonCriterium Path Finder in Splunk Search 08-19-2020
0 3
0
3
user333
Hello,I am having trouble with filtering fields extracted using rex as follows:rex max_match&#61;0 field&#61;sessions_as_clie...
by user333 Engager in Splunk Search 08-19-2020
0 2
0
2
vinod0313
I have a string like this below{ABC,DEF,GHI,JKL}i am able to show it as below in my result 1. ABC    DEF    GHI    JK...
by vinod0313 Explorer in Splunk Search 08-19-2020
0 1
0
1
beetlegeuse
I'm calling a REST API using curl on a UF to collect data from a remote DataPower appliance; the output is in JSON fo...
by beetlegeuse Path Finder in Splunk Search 08-19-2020
0 2
0
2
benhooper
We're using a REST API to connect to a case / monitoring system and retrieve any data newer than the last run. This d...
by benhooper Communicator in Splunk Search 08-19-2020
0 5
0
5
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...