Splunk Search

Splunk Search
Community Activity
mputtam
Hi Community,I was trying to pull the logs  in the following format _time, src, dest, src_port, dest_port by using st...
by mputtam Path Finder in Splunk Search 08-11-2020
0 1
0
1
wu_weidong
Hi all,I'm trying to set the search period such that "earliest" is a specific day, and "latest" is 7 days after that....
by wu_weidong Path Finder in Splunk Search 08-11-2020
0 1
0
1
lukas
Hi,I have a lookup file like this -users:User1User2User3User4...I need to count the events by user:index=myindex | st...
by lukas Loves-to-Learn in Splunk Search 08-11-2020
0 2
0
2
dkgs
Hello,Below query in wmi.conf file is not returning any events . But other queries are working.Please do suggest if a...
by dkgs Communicator in Splunk Search 08-11-2020
0 0
0
0
wbolten
Hi, The following SPL returns records to me as shown below.   index="uf_basickpi" host!=DS-* (sourcetype="CPU" counte...
by wbolten Path Finder in Splunk Search 08-11-2020
0 2
0
2
shashank_24
Hi, I am stuck at a query problem. So what i need to do is join some events and get the result and for that I am usin...
by shashank_24 Path Finder in Splunk Search 08-11-2020
0 5
0
5
wu_weidong
Hi all,I'm trying to display a week-over-week percentage change of event count collected for various countries, and d...
by wu_weidong Path Finder in Splunk Search 08-11-2020
0 2
0
2
benhooper
In my dashboard, I have "Alerts Open" timechart single value panels with colour ranges that are using the following s...
by benhooper Communicator in Splunk Search 08-11-2020
0 1
0
1
sudhakar419
Hi, We are planning to create alerts based on the search pattern we are given. We are very new and need your suggesti...
by sudhakar419 Observer in Splunk Search 08-10-2020
0 3
0
3
rkris
How do I use rex to extract the virus info so that I can display this info in my splunk dashboard?
by rkris Explorer in Splunk Search 08-10-2020
0 8
0
8
rkris
Is 192.168.1.111 the source or destination IP Address?
by rkris Explorer in Splunk Search 08-10-2020
0 1
0
1
Username1
Hi Everyone,This might be straight forward and I'm missing it but my current query is below and I am not able to get ...
by Username1 Path Finder in Splunk Search 08-10-2020
0 5
0
5
daniel_althoff8
I am trying to write a search that will update a lookup asset table, with an additional table column metric (weight1)...
by daniel_althoff8 Loves-to-Learn in Splunk Search 08-10-2020
0 4
0
4
rkris
 I'm trying to display the city and country name for all these IP Addesses which I extracted from my windows log file...
by rkris Explorer in Splunk Search 08-10-2020
0 2
0
2
skavuri11
I am new to Splunk. I have the logs in the following format for our servers. Host, CPU, %USAGEHost, Memory, %UsageHos...
by skavuri11 Observer in Splunk Search 08-10-2020
0 2
0
2
sloh_splunk
I am sending sauce labs test results to splunk and they are in this format:  { "testsuite": { "@name": "'PR-108...
by sloh_splunk Splunk Employee Splunk Employee in Splunk Search 08-10-2020
0 3
0
3
edrivera3
HiI have one index with two sources (source=source1 and source2). Both events have two common fields (common_field1 a...
by edrivera3 Builder in Splunk Search 08-10-2020
0 4
0
4
sravankaripe
Hi,  Can someone help me with this.I have fields with values  SP=3390510 and TP=3394992I am trying to get Success per...
by sravankaripe Communicator in Splunk Search 08-10-2020
0 1
0
1
BB34
Hello all, I am attempting to put together a search where I'm taking website status (200=allowed, etc) and breaking i...
by BB34 Explorer in Splunk Search 08-10-2020
0 6
0
6
dieguiariel
Hi! i've been trying to regex some part of the windows events to save license. Many windows events contains a large p...
by dieguiariel Path Finder in Splunk Search 08-10-2020
0 9
0
9
benhooper
I'm trying to get the average time that a case is open in a system.To get the latest event per case that's closed and...
by benhooper Communicator in Splunk Search 08-10-2020
0 13
0
13
karthi2809
This is my query and I have some challenges in the log. The thing is my daily job will start at 11 PM. If the job run...
by karthi2809 Builder in Splunk Search 08-10-2020
0 6
0
6
yossefn
Hi, I have a lookup tables with user names (ftp_users.csv).Every day I'm getting one line from a particular system wi...
by yossefn Path Finder in Splunk Search 08-10-2020
0 5
0
5
sarausch
Hey Guys,I am struggling arround a few days now, but I cant find a good/efficient solution for my problem.I want to c...
by sarausch New Member in Splunk Search 08-10-2020
0 3
0
3
willadams
I have written a rule that is trying to use a transaction and based on the transaction value to either alert or not. ...
by willadams Contributor in Splunk Search 08-09-2020
0 1
0
1
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...