Splunk Search

Splunk Search
Community Activity
iomega311
I am trying to understand how to remove results where "field_a" and "field_a" each contain a certain value together i...
by iomega311 Explorer in Splunk Search 08-19-2020
0 2
0
2
Marco
Hello Guys,I'm trying to plot multiple values onto a time chart. These values are collected through a Where Like stat...
by Marco Communicator in Splunk Search 08-19-2020
0 7
0
7
vinod0313
I have a drill down in my dashboard.When I select any choice from the drill down other two panels(reports) will appea...
by vinod0313 Explorer in Splunk Search 08-19-2020
0 1
0
1
prabhu77749
Hi rteam, We have too many index created and now planning to have different retention duration  based on sourcetypes....
by prabhu77749 Explorer in Splunk Search 08-19-2020
0 1
0
1
BookerT14
Before a change was made, data was originally being sent to Splunk in the example of { %a | %b | %c | %d }. Now after...
by BookerT14 Engager in Splunk Search 08-19-2020
0 4
0
4
performancemoni
Hello, We are having some issues finalizing the installation of our Splunk environment. We have 2 Linux servers: 1 Se...
by performancemoni Path Finder in Splunk Search 08-19-2020
0 1
0
1
subhrangshu
Hello,I am trying to combine couple of fields data separated by a dash. Tried few options but could not get the expec...
by subhrangshu Explorer in Splunk Search 08-19-2020
0 2
0
2
danl
I've been unable to get a boolean value extracted from JSON written to Splunk. The data looks like this:   build: {<!-- -->  ...
by danl Explorer in Splunk Search 08-19-2020
0 5
0
5
CarbonCriterium
I have four versions of a nearly identical search.  The last one returns a completely different result.  What is it a...
by CarbonCriterium Path Finder in Splunk Search 08-19-2020
0 3
0
3
user333
Hello,I am having trouble with filtering fields extracted using rex as follows:rex max_match&#61;0 field&#61;sessions_as_clie...
by user333 Engager in Splunk Search 08-19-2020
0 2
0
2
vinod0313
I have a string like this below{ABC,DEF,GHI,JKL}i am able to show it as below in my result 1. ABC    DEF    GHI    JK...
by vinod0313 Explorer in Splunk Search 08-19-2020
0 1
0
1
beetlegeuse
I'm calling a REST API using curl on a UF to collect data from a remote DataPower appliance; the output is in JSON fo...
by beetlegeuse Path Finder in Splunk Search 08-19-2020
0 2
0
2
benhooper
We're using a REST API to connect to a case / monitoring system and retrieve any data newer than the last run. This d...
by benhooper Communicator in Splunk Search 08-19-2020
0 5
0
5
DCUpro
Hi all,I'm a bit of a newbie to splunk but I was trying to create a dashboard using the stats count by function for a...
by DCUpro Explorer in Splunk Search 08-19-2020
0 2
0
2
surekhasplunk
HiI am using below query to get the details of alarms which has (one Warning and one OK status) or (one Critical and ...
by surekhasplunk Communicator in Splunk Search 08-19-2020
0 8
0
8
Lucie99
Hi everyone, I'm looking for how to add information on a graphical point. My graph shows only an average and an ofnum...
by Lucie99 Explorer in Splunk Search 08-19-2020
0 2
0
2
friskyapple
I've got a few different tables, all csv, that provide different information.The main events table includes a bunch o...
by friskyapple Explorer in Splunk Search 08-19-2020
0 1
0
1
eidil
I am trying to use data models in my subsearch but it seems it returns 0 results.| datamodel disk_forecast C_drive se...
by eidil Explorer in Splunk Search 08-18-2020
0 4
0
4
mitag
Getting this informational message when running "stats count" commands:This search uses deprecated 'stats' command sy...
by mitag Contributor in Splunk Search 08-18-2020
0 12
0
12
chtmai
I have this data coming in every minute to monitor application performance:  { "events": [ { "appId": "mock-app...
by chtmai Explorer in Splunk Search 08-18-2020
0 5
0
5
PN3000
Hi,Data was indexed 4 hours ago. At the time i was able to see the data when searching the relevant index. 4 hours la...
by PN3000 Loves-to-Learn in Splunk Search 08-18-2020
0 2
0
2
mitag
Running a sample search suggested by "Add sparklines to search results" in Splunk Documentation for the latest versio...
by mitag Contributor in Splunk Search 08-18-2020
0 1
0
1
bloizides
I am aware that answers.splunk.com has changed engines and is now community.splunk.com. The migration announcement st...
by bloizides Observer in Splunk Search 08-18-2020
0 4
0
4
daniel_althoff8
Is anyone aware of a dashboard visualization that will allow me to edit a lookup table in the UI? Rather than using L...
by daniel_althoff8 Loves-to-Learn in Splunk Search 08-18-2020
0 0
0
0
vishaltaneja070
License Usage by Each Indexer : Need to find license usage by each indexer.
by vishaltaneja070 Motivator in Splunk Search 08-18-2020
0 2
0
2
Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...