Splunk Search

Splunk Search
Community Activity
sloh_splunk
I am sending sauce labs test results to splunk and they are in this format:  { "testsuite": { "@name": "'PR-108...
by sloh_splunk Splunk Employee Splunk Employee in Splunk Search 08-10-2020
0 3
0
3
edrivera3
HiI have one index with two sources (source=source1 and source2). Both events have two common fields (common_field1 a...
by edrivera3 Builder in Splunk Search 08-10-2020
0 4
0
4
sravankaripe
Hi,  Can someone help me with this.I have fields with values  SP=3390510 and TP=3394992I am trying to get Success per...
by sravankaripe Communicator in Splunk Search 08-10-2020
0 1
0
1
BB34
Hello all, I am attempting to put together a search where I'm taking website status (200=allowed, etc) and breaking i...
by BB34 Explorer in Splunk Search 08-10-2020
0 6
0
6
dieguiariel
Hi! i've been trying to regex some part of the windows events to save license. Many windows events contains a large p...
by dieguiariel Path Finder in Splunk Search 08-10-2020
0 9
0
9
benhooper
I'm trying to get the average time that a case is open in a system.To get the latest event per case that's closed and...
by benhooper Communicator in Splunk Search 08-10-2020
0 13
0
13
karthi2809
This is my query and I have some challenges in the log. The thing is my daily job will start at 11 PM. If the job run...
by karthi2809 Builder in Splunk Search 08-10-2020
0 6
0
6
yossefn
Hi, I have a lookup tables with user names (ftp_users.csv).Every day I'm getting one line from a particular system wi...
by yossefn Path Finder in Splunk Search 08-10-2020
0 5
0
5
sarausch
Hey Guys,I am struggling arround a few days now, but I cant find a good/efficient solution for my problem.I want to c...
by sarausch New Member in Splunk Search 08-10-2020
0 3
0
3
willadams
I have written a rule that is trying to use a transaction and based on the transaction value to either alert or not. ...
by willadams Contributor in Splunk Search 08-09-2020
0 1
0
1
jip31
HiIn the search below, I would be able to change the background color following the value of the FreeSpace fieldIt wo...
by jip31 Motivator in Splunk Search 08-09-2020
0 9
0
9
renuka
If suppose i have two Phases with first and last datePhase 1=1 JAN 2020, 1 March 2020Phase2=1Apr 2020,1jun 2020if i g...
by renuka Path Finder in Splunk Search 08-09-2020
0 7
0
7
amandeepsingh
Splukers, I want to calculate uptime for my network. By this I mean, I need uptime in hours like time diffrence betwe...
by amandeepsingh Explorer in Splunk Search 08-09-2020
0 6
0
6
skodak
Can some one please help me to change the background color of Table fieldname.By default I am getting the fieldname b...
by skodak Explorer in Splunk Search 08-09-2020
0 4
0
4
tbrown
This is probably a really simple question but I have events coming in every minute.I've used  | rex field=_raw .... t...
by tbrown Path Finder in Splunk Search 08-09-2020
0 2
0
2
rkris
I've created a text form input called 'username' to search for usernames in my dashboard panels and i've set the toke...
by rkris Explorer in Splunk Search 08-09-2020
0 3
0
3
joemarty82
Hello, I have json data and I am trying to search a specific field using a dynamic variable. I can properly search if...
by joemarty82 Explorer in Splunk Search 08-09-2020
0 5
0
5
rkris
splunk_qns3_p1.PNGsplunk_qns3_p2.PNGsplunk_qns3_p3.PNGsplunk_qns3_p4.PNGsplunk_qns3_p5.PNGI have uploaded the log fil...
by rkris Explorer in Splunk Search 08-08-2020
0 1
0
1
rkris
I've created a dropdown field for New User Accounts Created(Failed Attempts)splunk_qns_p1.PNG And this is the search ...
by rkris Explorer in Splunk Search 08-08-2020
0 1
0
1
rkris
 splunk_qns2_p3.PNGsplunk_qns2_p2.PNGsplunk_qns2_p1.PNGI have uploaded the log file containing the virus information ...
by rkris Explorer in Splunk Search 08-08-2020
0 1
0
1
chrkohm
Hi,I have several log files that I´m "batch indexing".for example: file01.log file02.log file03.log file04.log Now I´...
by chrkohm Path Finder in Splunk Search 08-07-2020
0 4
0
4
noman377
I have a very simple search:index=logs_glbl sourcetype=kube:container:app-name namespace=prod status=500 | stats coun...
by noman377 Explorer in Splunk Search 08-07-2020
0 2
0
2
cbwillh
I have syslogs from our load balancer which has 4 servers on it.When one of the servers states changes from UP to DOW...
by cbwillh Path Finder in Splunk Search 08-07-2020
0 9
0
9
skodak
I have got a query like this index=* request in (request1, request2, request3)eval  request&& = request1 + request2Pl...
by skodak Explorer in Splunk Search 08-07-2020
0 3
0
3
Matthew86
Hi there,  I have just started using Splunk and it is quite alien to me. Hope you guys can help me out! I have the fo...
by Matthew86 Explorer in Splunk Search 08-07-2020
0 2
0
2
Get Updates on the Splunk Community!

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...