Splunk Search

Splunk Search
Community Activity
gowtham08091
Hello, I am trying to span for 1 week and 1 month chart from the summary index search, but When in use | bin span=1w,...
by gowtham08091 Explorer in Splunk Search 07-24-2020
0 3
0
3
mnarmada
Hello,I think this might be simple but need some guidance. Any help would be really appreciated.I have a log and in w...
by mnarmada Path Finder in Splunk Search 07-24-2020
0 4
0
4
lucas4394
There is a big difference in term of performance in using "inputlookup" and "lookup" from the following queries with ...
by lucas4394 Path Finder in Splunk Search 07-24-2020
0 5
0
5
rockstarter
How do I convert a timestamp from any timezone to UTC in splunk? I have a field "DeviceTime" that can hold any time z...
by rockstarter New Member in Splunk Search 07-23-2020
0 2
0
2
prandelicious
I wanted to graph the computed value of two fields and group the result by another field: | mstats avg(kube.pod.cpu.l...
by prandelicious Loves-to-Learn Lots in Splunk Search 07-23-2020
0 9
0
9
Sundried
I have a search:   search | eval difference=now() - strptime(createdDate,"%Y-%m-%d %H:%M:%S.%3N")   This works, excep...
by Sundried Explorer in Splunk Search 07-23-2020
1 5
1
5
preetham2215
Hi team, I want to divide the output result of one query with output of second query and get a remainder. I am using ...
by preetham2215 New Member in Splunk Search 07-23-2020
0 2
0
2
renjithk
Hi,Have logs for both request to a server and its response. However, in some cases the response won't be received and...
by renjithk Observer in Splunk Search 07-23-2020
0 1
0
1
jip31
hiThe stats command below allows me to display data in a table panelI would like to display the fields header in an o...
by jip31 Motivator in Splunk Search 07-23-2020
0 3
0
3
sbhuie
I need to create a search that counts IPs which return events for two different fields in the same index. Search 1 wi...
by sbhuie New Member in Splunk Search 07-23-2020
0 5
0
5
splunkuser_tr
HI Team ,i need to edit existing dashboard and need to display :time taken for 90, 97 and 99 percentile of transactio...
by splunkuser_tr Observer in Splunk Search 07-23-2020
0 3
0
3
surekhasplunk
Hi,index=myindex |search name=*| bin span=1d _time | stats dc(name) as name by _timehere i am getting the number of n...
by surekhasplunk Communicator in Splunk Search 07-23-2020
0 1
0
1
chrisboy68
Hi using a Report (cause I need to allow permissions to the data) in a dashboard passing tokens. Looking at the docs,...
by chrisboy68 Contributor in Splunk Search 07-23-2020
0 4
0
4
kiru2992
Hello Everyone!I have a scenario to extract a particular set id's from index1 in search1 and run a search2 on index2 ...
by kiru2992 Path Finder in Splunk Search 07-23-2020
0 3
0
3
rahul15601
Hi,I am very new in Splunk and need some help to understand Splunk command execution structure.Case: We are having in...
by rahul15601 Engager in Splunk Search 07-23-2020
0 3
0
3
Reethika
Hi,/opt/splunk/bin/splunk search " index=****  sourcetype="*****:proxylogs" earliest=-15m@m latest=now | fields actio...
by Reethika Path Finder in Splunk Search 07-23-2020
0 1
0
1
rahul2gupta
Hi @gcusello  ,While running the following search we are getting error as stated in topic.Search: |dbquery wmsqlprd "...
by rahul2gupta Path Finder in Splunk Search 07-23-2020
0 2
0
2
miguel1423
Hello,I make a script that retourne a certificats list in Excel form then I display uniquely the certifcat about to e...
by miguel1423 Explorer in Splunk Search 07-22-2020
0 2
0
2
jip31
hiIn the code below, I would like that if the condition "No patch in late" in my single panel  = true, the color back...
by jip31 Motivator in Splunk Search 07-22-2020
0 0
0
0
CrailAtWork
Hello all,I've tried to search here and through search engines with no luck.  I can't seem to get the knack for refer...
by CrailAtWork Engager in Splunk Search 07-22-2020
0 3
0
3
jerinvarghese
Hi all,I need help in changing an output that getting from below search to be changed.  index=itsm | stats count by C...
by jerinvarghese Communicator in Splunk Search 07-22-2020
0 2
0
2
FaridHamidi
This is the data set from Fundamental 1. A lot of successful purchase events with same 'ProductName' doesn't include ...
by FaridHamidi Engager in Splunk Search 07-22-2020
0 1
0
1
bullriser
Hello, i have a splunk query like this  index=someindex container_name=app ( cookie=*cookie1" OR cookie="cookie2" ) e...
by bullriser New Member in Splunk Search 07-22-2020
0 1
0
1
chris94089
I'm performing a REST Search that ends with a | table command When I configure the script to csv format, I get 5 even...
by chris94089 Path Finder in Splunk Search 07-22-2020
0 1
0
1
lifekis
I have a problem with parsing, so I want to change the sourcetype. ex) index=A sourcetype=A  →  index=A sourcetype=B ...
by lifekis Explorer in Splunk Search 07-22-2020
0 8
0
8
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...