Splunk Search

Splunk Search
Community Activity
thinhdinh
Hello experts,I am trying to create a custom macro, from that it will returns a result depends on the argument I pass...
by thinhdinh Path Finder in Splunk Search 07-09-2020
0 3
0
3
alvin_sulendra
Hi All,We are trying to get the memory usage of mvexpand command so that we can set the max_mem_usage_mb in the limit...
by alvin_sulendra New Member in Splunk Search 07-09-2020
0 0
0
0
NocSystems
Is it possible to have a local copy of what is at docsCheckerBaseURL
by NocSystems Engager in Splunk Search 07-08-2020
2 7
2
7
mgp173455
Hello,  I am trying to use iplocation to search for instances of a specific city or region for example:  * iplocation...
by mgp173455 Loves-to-Learn in Splunk Search 07-08-2020
0 3
0
3
season88481
We have some log files with name like this: logs_2020-06-30.logs. A sample events looks like this: 2020-07-01 12:01:5...
by season88481 Contributor in Splunk Search 07-08-2020
0 1
0
1
season88481
Hi everyone, I am trying to add a field for the current OS time.  Here is my props.conf and transforms.conf #props.co...
by season88481 Contributor in Splunk Search 07-08-2020
0 2
0
2
raindad85
Hi splunker, I would like to create a python custom commands to write results of SPL commands in a CSV file. this is ...
by raindad85 New Member in Splunk Search 07-08-2020
0 1
0
1
maxywalker1
I have been trying to look at statistical figures for failed login attempts over a 30 day period for each user by the...
by maxywalker1 Explorer in Splunk Search 07-08-2020
0 4
0
4
swaguzari
Mighty Splunk people... I'm having a problem creating an alert for following scenario: Data source 1: index=mail sou...
by swaguzari Engager in Splunk Search 07-08-2020
0 5
0
5
realtimetechnol
Hi All,I appreciate that there are tons of answers on this but I am having issues getting it to work!I have a csv nam...
by realtimetechnol Explorer in Splunk Search 07-08-2020
0 1
0
1
timrich66
Hi all,I have a dashboard where users can add comments to a .csv lookup file.  The comments are only related to the d...
by timrich66 Communicator in Splunk Search 07-08-2020
0 2
0
2
ak9092
Hi All,I am currently getting following results from my search query - time1                                      tim...
by ak9092 Path Finder in Splunk Search 07-08-2020
0 6
0
6
Boopalan
How to sum all the Latest events for the specific fieldExample:Raw data of the event: Client=XXXXX,CreationTime=3/19/...
by Boopalan New Member in Splunk Search 07-08-2020
0 0
0
0
lukasmecir
Hello,I have following issue:I have VPN GW used to remote connecting of users, this GW sends log to Splunk. I would l...
by lukasmecir Path Finder in Splunk Search 07-08-2020
0 2
0
2
andylee53
Hello I'm looking to run a search in a Firewall log index for connections to a know IP range and trying to decide whi...
by andylee53 New Member in Splunk Search 07-08-2020
0 3
0
3
mathiasy123
I have data that has _time from 18:00:20-18:00:52 and I set my current time to 18:01 so it should search the 18:00 ti...
by mathiasy123 Path Finder in Splunk Search 07-08-2020
0 10
0
10
mufthmu
Hi Splunk users, After I successfully deployed a Splunk standalone, I see this error message reg Searches skipped: ...
by mufthmu Path Finder in Splunk Search 07-08-2020
0 1
0
1
Scott_Wang
I'm kind of new in Splunk and found one syntax of replace when I read the official document. Here is the link https:/...
by Scott_Wang Explorer in Splunk Search 07-07-2020
0 4
0
4
jbax
Hello,I have a field that contains the string below. a) There can be fewer/more than the 4 events listed below.  b) V...
by jbax Engager in Splunk Search 07-07-2020
0 3
0
3
randeepbydesign
I have this query that matches two types of events, sending a request and receiving an answer. My goal is to take the...
by randeepbydesign Engager in Splunk Search 07-07-2020
0 2
0
2
dunyaelbasan
I can't assign roles to and can't see new users in Splunk search head for last 2 weeks. We have LDAP auth.A part of t...
by dunyaelbasan Path Finder in Splunk Search 07-07-2020
0 4
0
4
andrewtrobec
Hello all, The question is self explanatory I think. I've seen similar questions that are resolved with an eval, but...
by andrewtrobec Motivator in Splunk Search 07-07-2020
0 4
0
4
dfall
HelloI noticed a lot of the events not the same timestamp as Splunk. Can you tell me how I can compare the date of th...
by dfall Loves-to-Learn in Splunk Search 07-07-2020
0 1
0
1
pm771
Events stream has ID field in every record.  There is a lookup table with a small subset of IDs.The task is to calcul...
by pm771 Communicator in Splunk Search 07-07-2020
0 2
0
2
sphiwee
[2020-07-07 12:40:01+0200] workspace_sandbox RUNNING pid 17159, uptime 21 days, 21:43:58 i have this line of log but ...
by sphiwee Contributor in Splunk Search 07-07-2020
0 5
0
5
Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...
Top Solution Authors