| I have below kind of data.App Name StatusApp1 0App2 0App3 0App4 ... by georgear7 Communicator in Splunk Search 08-12-2020 0 4 | 0 | 4 | ||
| Hello Splunk members!I currently have a search that produces "Users" connecting to certain "hosts" whereas the status... by MJA411 Explorer in Splunk Search 08-12-2020 0 0 | 0 | 0 | ||
| I have a search that returns the diff of two times, but the user wants it in "1 day 5 hours and 23 minutes" format no... by jameswatts Explorer in Splunk Search 08-12-2020 0 3 | 0 | 3 | ||
| I need assistance building a search that looks back in time 5 minutes to check and see if fields are present. If so ... by jodros Builder in Splunk Search 08-11-2020 0 6 | 0 | 6 | ||
| I have an index where each event has unique EventID and Status fields.Each event is progressing through multiple inte... by pm771 Communicator in Splunk Search 08-11-2020 0 2 | 0 | 2 | ||
| All of our Splunk users, including members of our Leadership Team are currently in the US/Eastern time zone. All of t... by adnankhan5133 Communicator in Splunk Search 08-11-2020 0 3 | 0 | 3 | ||
| Hi All, I am trying to access Splunk from inside the Azure Databricks instances. I have requirements to run queries f... by sbuxplat Observer in Splunk Search 08-11-2020 0 0 | 0 | 0 | ||
| HiI have a dashboard, my requirement is like when a user will select a value Splunk in a multi-select, my pannel quey... by bapun18 Communicator in Splunk Search 08-11-2020 0 6 | 0 | 6 | ||
| Currently I have splunk injecting AWS logs showing NACL's. Each event has an array that is called network_acl_entries... by stoneyhrm Observer in Splunk Search 08-11-2020 0 1 | 0 | 1 | ||
| Dear, I need to identify some duplicate events that are right after the "Call-ID:", however in Splunk I am not getti... by leandromatperei Path Finder in Splunk Search 08-11-2020 0 1 | 0 | 1 | ||
| struggling to extract underlined items as RUN NAME by trevorkubheka New Member in Splunk Search 08-11-2020 0 4 | 0 | 4 | ||
| I currently have the following SPL query that generates a table, and appears as follows:Service IDResource NameTransa... by adnankhan5133 Communicator in Splunk Search 08-11-2020 0 1 | 0 | 1 | ||
| Hi Community,I was trying to pull the logs in the following format _time, src, dest, src_port, dest_port by using st... by mputtam Path Finder in Splunk Search 08-11-2020 0 1 | 0 | 1 | ||
| Hi all,I'm trying to set the search period such that "earliest" is a specific day, and "latest" is 7 days after that.... by wu_weidong Path Finder in Splunk Search 08-11-2020 0 1 | 0 | 1 | ||
| Hi,I have a lookup file like this -users:User1User2User3User4...I need to count the events by user:index=myindex | st... by lukas Loves-to-Learn in Splunk Search 08-11-2020 0 2 | 0 | 2 | ||
| Hello,Below query in wmi.conf file is not returning any events . But other queries are working.Please do suggest if a... by dkgs Communicator in Splunk Search 08-11-2020 0 0 | 0 | 0 | ||
| Hi, The following SPL returns records to me as shown below. index="uf_basickpi" host!=DS-* (sourcetype="CPU" counte... by wbolten Path Finder in Splunk Search 08-11-2020 0 2 | 0 | 2 | ||
| Hi, I am stuck at a query problem. So what i need to do is join some events and get the result and for that I am usin... by shashank_24 Path Finder in Splunk Search 08-11-2020 0 5 | 0 | 5 | ||
| Hi all,I'm trying to display a week-over-week percentage change of event count collected for various countries, and d... by wu_weidong Path Finder in Splunk Search 08-11-2020 0 2 | 0 | 2 | ||
| In my dashboard, I have "Alerts Open" timechart single value panels with colour ranges that are using the following s... by benhooper Communicator in Splunk Search 08-11-2020 0 1 | 0 | 1 | ||
| Hi, We are planning to create alerts based on the search pattern we are given. We are very new and need your suggesti... by sudhakar419 Observer in Splunk Search 08-10-2020 0 3 | 0 | 3 | ||
| splunk_qns8_p1.PNGsplunk_qns8_p2.PNGsplunk_qns8_p3.PNGHow do I use rex to extract the virus info so that I can displa... by rkris Explorer in Splunk Search 08-10-2020 0 8 | 0 | 8 | ||
| splunk_qns7_p1.PNGIs 192.168.1.111 the source or destination IP Address? by rkris Explorer in Splunk Search 08-10-2020 0 1 | 0 | 1 | ||
| Hi Everyone,This might be straight forward and I'm missing it but my current query is below and I am not able to get ... by Username1 Path Finder in Splunk Search 08-10-2020 0 5 | 0 | 5 | ||
| I am trying to write a search that will update a lookup asset table, with an additional table column metric (weight1)... by daniel_althoff8 Loves-to-Learn in Splunk Search 08-10-2020 0 4 | 0 | 4 |