Splunk Search

Splunk Search
Community Activity
avivn
hello what is the command to check if a field exists in one column but not the other? for example, to count the "10...
by avivn Explorer in Splunk Search 07-25-2020
0 8
0
8
dominhthe110
Hi everyone, This is the first time, I've used Splunk.  I have the data like this:ORDER_IDPRICEGROUP0000110A0000220B0...
by dominhthe110 Explorer in Splunk Search 07-25-2020
0 4
0
4
sirching
I am running a search against my windows event logs, lets call it sourcetypeA.  I need to use the IP address obtained...
by sirching Loves-to-Learn Lots in Splunk Search 07-25-2020
0 1
0
1
bala1185
I have created the reports based on the errors in the OS.Saved Reports:Report_Name  --  DescriptionNetwork   --  Repo...
by bala1185 Engager in Splunk Search 07-25-2020
0 0
0
0
lmattar
Hi. I already have a Splunk query that we use in a production environment. We are now adding a new field that we'd li...
by lmattar Engager in Splunk Search 07-24-2020
0 2
0
2
jip31
HII use the code below and I would like that if the host I fill in my drilldown doenst exists J have the message "No ...
by jip31 Motivator in Splunk Search 07-24-2020
0 3
0
3
rkris
I'm trying to display failed user login information by using a timechart but I'm not sure how to show the time and da...
by rkris Explorer in Splunk Search 07-24-2020
0 5
0
5
Username1
So suppose that everyday Splunk takes in a report that houses 9 different fields, one of which is called 'status'. St...
by Username1 Path Finder in Splunk Search 07-24-2020
0 6
0
6
harsh5523
Hello Team, Whenever i use the rename command to rename the _time field than output comes in the binary fomart. For E...
by harsh5523 New Member in Splunk Search 07-24-2020
0 2
0
2
splunkreal
Hello guys, does maxTotalDataSizeMB parameter in indexes.conf will still apply if we use volume for coldPath (and hom...
by splunkreal Influencer in Splunk Search 07-24-2020
0 1
0
1
nls7010
I have been able to find searches for roles mapped to AD Groups, but I need to get the indexes those roles are allowe...
by nls7010 Path Finder in Splunk Search 07-24-2020
0 1
0
1
splunknoob
Hi I hope someone can help me .. I am completely new to Splunk. Although I love it so far I don't really know how to ...
by splunknoob Engager in Splunk Search 07-24-2020
0 3
0
3
bala1185
H Team, Am trying to fetch the nicSwitch* details of only corresponding nicName from the below json data, which i cou...
by bala1185 Engager in Splunk Search 07-24-2020
0 3
0
3
shravanikarale
In below example I want only count of "a" as he has not paid till the end. And also the data entries are many which c...
by shravanikarale Loves-to-Learn Lots in Splunk Search 07-24-2020
0 5
0
5
gowtham08091
Hello, I am trying to span for 1 week and 1 month chart from the summary index search, but When in use | bin span=1w,...
by gowtham08091 Explorer in Splunk Search 07-24-2020
0 3
0
3
mnarmada
Hello,I think this might be simple but need some guidance. Any help would be really appreciated.I have a log and in w...
by mnarmada Path Finder in Splunk Search 07-24-2020
0 4
0
4
lucas4394
There is a big difference in term of performance in using "inputlookup" and "lookup" from the following queries with ...
by lucas4394 Path Finder in Splunk Search 07-24-2020
0 5
0
5
rockstarter
How do I convert a timestamp from any timezone to UTC in splunk? I have a field "DeviceTime" that can hold any time z...
by rockstarter New Member in Splunk Search 07-23-2020
0 2
0
2
prandelicious
I wanted to graph the computed value of two fields and group the result by another field: | mstats avg(kube.pod.cpu.l...
by prandelicious Loves-to-Learn Lots in Splunk Search 07-23-2020
0 9
0
9
Sundried
I have a search:   search | eval difference=now() - strptime(createdDate,"%Y-%m-%d %H:%M:%S.%3N")   This works, excep...
by Sundried Explorer in Splunk Search 07-23-2020
1 5
1
5
preetham2215
Hi team, I want to divide the output result of one query with output of second query and get a remainder. I am using ...
by preetham2215 New Member in Splunk Search 07-23-2020
0 2
0
2
renjithk
Hi,Have logs for both request to a server and its response. However, in some cases the response won't be received and...
by renjithk Observer in Splunk Search 07-23-2020
0 1
0
1
jip31
hiThe stats command below allows me to display data in a table panelI would like to display the fields header in an o...
by jip31 Motivator in Splunk Search 07-23-2020
0 3
0
3
sbhuie
I need to create a search that counts IPs which return events for two different fields in the same index. Search 1 wi...
by sbhuie New Member in Splunk Search 07-23-2020
0 5
0
5
splunkuser_tr
HI Team ,i need to edit existing dashboard and need to display :time taken for 90, 97 and 99 percentile of transactio...
by splunkuser_tr Observer in Splunk Search 07-23-2020
0 3
0
3
Get Updates on the Splunk Community!

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...
Top Solution Authors