Splunk Search

Splunk Search
Community Activity
vikashperiwal
HI, While use chart command i am getting null values for status in search and the same in dashboard i do not see in t...
by vikashperiwal Path Finder in Splunk Search 07-31-2020
0 2
0
2
sirching
I want to use the setfields command to set fieldA to a particular value.  That value is located in fieldB.  How can I...
by sirching Loves-to-Learn Lots in Splunk Search 07-30-2020
0 5
0
5
tbrown
I have a field that contains either 0 or 1 according to the state of a process. What command could I use to make a ti...
by tbrown Path Finder in Splunk Search 07-30-2020
0 10
0
10
tbrown
So I have a search that is structured as follows index=main <filtering for start and end events> OR <filtering for ev...
by tbrown Path Finder in Splunk Search 07-30-2020
0 4
0
4
Glioblaster
I have a search yielding data from three different email fields, call them msg.header.to{}, msg.header.cc{} and orig_...
by Glioblaster Explorer in Splunk Search 07-30-2020
0 6
0
6
gsbpp
I have the following splunk event:2020-Jul-30 18:19:02.891Z level=DEBUG thread=https-jsse-nio-2720-exec-9 pid=20 code...
by gsbpp Explorer in Splunk Search 07-30-2020
0 2
0
2
shweths
We are using 100+ machines...Could you please help me in splunk search...The scenario is I am having 100 machines and...
by shweths New Member in Splunk Search 07-30-2020
0 3
0
3
priyaramki16
Hi, I wanted a single graph to show values. One search is index="cumu_open_csv"  Assignee="ram"| eval open_field=if(i...
by priyaramki16 Path Finder in Splunk Search 07-30-2020
0 6
0
6
tbrus
I'm trying to perform a search that will be used for a notable event that looks for the creation of a load balancer l...
by tbrus Engager in Splunk Search 07-30-2020
0 2
0
2
yeisonv
Good morning, I am trying to generate an alert for productive applications when they are in "debug" modeThe problem i...
by yeisonv Explorer in Splunk Search 07-30-2020
0 7
0
7
anandhalagaras1
Hi Team, I want to filter out the logs during the indexing level itself i.e. If the event comes with the following fo...
by anandhalagaras1 Contributor in Splunk Search 07-30-2020
0 6
0
6
tbrown
I have a panel on my dashboard that is a list of transactions. I edited the drill-down to link to the search of the t...
by tbrown Path Finder in Splunk Search 07-30-2020
0 2
0
2
inayath_khanin
Hi Folks, I am been trying to display latest time results. I have a logs where time stores under a custom field (Patc...
by inayath_khanin Explorer in Splunk Search 07-30-2020
0 4
0
4
ghildiya
I have the following query to search results which contain a specific rest endpoint which has a UUID path parameter: ...
by ghildiya Explorer in Splunk Search 07-30-2020
0 3
0
3
kiru2992
Hello Everyone!I have a scenario to get a Date column from index1 in search1 and remove the rows with null values in ...
by kiru2992 Path Finder in Splunk Search 07-30-2020
0 9
0
9
vikashperiwal
Hi,I have my dashboard with two views --radio buttonView AView BView A has 2 panels and view B also has 2 panel and i...
by vikashperiwal Path Finder in Splunk Search 07-30-2020
0 1
0
1
renuka
In my data i am getting multiple dates for single id.i need only recent date for each date.how can i remove other dat...
by renuka Path Finder in Splunk Search 07-30-2020
0 4
0
4
timyong80
I have multiple checkboxes which depending on the selections, it would hide or show different panels. Consider one pa...
by timyong80 Explorer in Splunk Search 07-30-2020
0 1
0
1
aniketb
How do I set up a static start time in alerts? I want my search to run from say June 15, 6:00 AM to now. The start ti...
by aniketb Path Finder in Splunk Search 07-30-2020
0 2
0
2
Bassik
I have a question on the use of eval on a UA String. I want to do a lookup on a UA String and call out the version of...
by Bassik Path Finder in Splunk Search 07-29-2020
0 11
0
11
Rodrigo_Larios
Hi, i'm trying to filter values greater than zero.I have this search: index="prod_super_cc" source=ETL_GRO_01ReadMess...
by Rodrigo_Larios Explorer in Splunk Search 07-29-2020
0 4
0
4
christopheducha
Hi I'm trying to regex my way into this puzzle, let me explain my problem. event 1 (field 2) raw value = log:word1 lo...
by christopheducha Explorer in Splunk Search 07-29-2020
0 2
0
2
piscriddo
Hi, I am executing a right join on two searches. Unfortunately, both search results have the same field names. How ca...
by piscriddo New Member in Splunk Search 07-29-2020
0 2
0
2
indeed_2000
HiI have several log files that add to Splunk, now try to search this string:index="Myindex" | search "HQL query plan...
by indeed_2000 Motivator in Splunk Search 07-29-2020
0 1
0
1
jeffbat
I am trying to figure out the best way to utilize a regkey we set on Windows server which indicates the Environment t...
by jeffbat Path Finder in Splunk Search 07-29-2020
0 0
0
0
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...