Splunk Search

Splunk Search
Community Activity
georgear7
I have below kind of data.App Name StatusApp1                0App2               0App3               0App4           ...
by georgear7 Communicator in Splunk Search 08-12-2020
0 4
0
4
MJA411
Hello Splunk members!I currently have a search that produces "Users" connecting to certain "hosts" whereas the status...
by MJA411 Explorer in Splunk Search 08-12-2020
0 0
0
0
jameswatts
I have a search that returns the diff of two times, but the user wants it in "1 day 5 hours and 23 minutes" format no...
by jameswatts Explorer in Splunk Search 08-12-2020
0 3
0
3
jodros
I need assistance building a search that looks back in time 5 minutes to check and see if fields are present.  If so ...
by jodros Builder in Splunk Search 08-11-2020
0 6
0
6
pm771
I have an index where each event has unique EventID and Status fields.Each event is progressing through multiple inte...
by pm771 Communicator in Splunk Search 08-11-2020
0 2
0
2
adnankhan5133
All of our Splunk users, including members of our Leadership Team are currently in the US/Eastern time zone. All of t...
by adnankhan5133 Communicator in Splunk Search 08-11-2020
0 3
0
3
sbuxplat
Hi All, I am trying to access Splunk from inside the Azure Databricks instances. I have requirements to run queries f...
by sbuxplat Observer in Splunk Search 08-11-2020
0 0
0
0
bapun18
HiI have a dashboard, my requirement is like when a user will select a value Splunk in a multi-select, my pannel quey...
by bapun18 Communicator in Splunk Search 08-11-2020
0 6
0
6
stoneyhrm
Currently I have splunk injecting AWS logs showing NACL's. Each event has an array that is called network_acl_entries...
by stoneyhrm Observer in Splunk Search 08-11-2020
0 1
0
1
leandromatperei
 Dear, I need to identify some duplicate events that are right after the "Call-ID:", however in Splunk I am not getti...
by leandromatperei Path Finder in Splunk Search 08-11-2020
0 1
0
1
trevorkubheka
struggling to extract underlined items as RUN NAME 
by trevorkubheka New Member in Splunk Search 08-11-2020
0 4
0
4
adnankhan5133
I currently have the following SPL query that generates a table, and appears as follows:Service IDResource NameTransa...
by adnankhan5133 Communicator in Splunk Search 08-11-2020
0 1
0
1
mputtam
Hi Community,I was trying to pull the logs  in the following format _time, src, dest, src_port, dest_port by using st...
by mputtam Path Finder in Splunk Search 08-11-2020
0 1
0
1
wu_weidong
Hi all,I'm trying to set the search period such that "earliest" is a specific day, and "latest" is 7 days after that....
by wu_weidong Path Finder in Splunk Search 08-11-2020
0 1
0
1
lukas
Hi,I have a lookup file like this -users:User1User2User3User4...I need to count the events by user:index=myindex | st...
by lukas Loves-to-Learn in Splunk Search 08-11-2020
0 2
0
2
dkgs
Hello,Below query in wmi.conf file is not returning any events . But other queries are working.Please do suggest if a...
by dkgs Communicator in Splunk Search 08-11-2020
0 0
0
0
wbolten
Hi, The following SPL returns records to me as shown below.   index="uf_basickpi" host!=DS-* (sourcetype="CPU" counte...
by wbolten Path Finder in Splunk Search 08-11-2020
0 2
0
2
shashank_24
Hi, I am stuck at a query problem. So what i need to do is join some events and get the result and for that I am usin...
by shashank_24 Path Finder in Splunk Search 08-11-2020
0 5
0
5
wu_weidong
Hi all,I'm trying to display a week-over-week percentage change of event count collected for various countries, and d...
by wu_weidong Path Finder in Splunk Search 08-11-2020
0 2
0
2
benhooper
In my dashboard, I have "Alerts Open" timechart single value panels with colour ranges that are using the following s...
by benhooper Communicator in Splunk Search 08-11-2020
0 1
0
1
sudhakar419
Hi, We are planning to create alerts based on the search pattern we are given. We are very new and need your suggesti...
by sudhakar419 Observer in Splunk Search 08-10-2020
0 3
0
3
rkris
splunk_qns8_p1.PNGsplunk_qns8_p2.PNGsplunk_qns8_p3.PNGHow do I use rex to extract the virus info so that I can displa...
by rkris Explorer in Splunk Search 08-10-2020
0 8
0
8
rkris
splunk_qns7_p1.PNGIs 192.168.1.111 the source or destination IP Address?
by rkris Explorer in Splunk Search 08-10-2020
0 1
0
1
Username1
Hi Everyone,This might be straight forward and I'm missing it but my current query is below and I am not able to get ...
by Username1 Path Finder in Splunk Search 08-10-2020
0 5
0
5
daniel_althoff8
I am trying to write a search that will update a lookup asset table, with an additional table column metric (weight1)...
by daniel_althoff8 Loves-to-Learn in Splunk Search 08-10-2020
0 4
0
4
Get Updates on the Splunk Community!

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...

Splunk Technical Support Is Moving to Cisco Support Tools

Introduction Splunk technical support is transitioning to Cisco’s support environment. This change brings ...
Top Solution Authors