Splunk Search

Splunk Search
Community Activity
byeb1264
I am trying to tune an alert but need to only exclude if 2 of three fields do not contain a string.  My goal is too t...
by byeb1264 Explorer in Splunk Search 07-06-2020
1 2
1
2
genesiusj
Hello, Trying to add several maps to a dashboard. One map for each continent, except North America. How do I lock a d...
by genesiusj Builder in Splunk Search 07-06-2020
0 1
0
1
Kazi1
Hi everyone,I am unable to calculate average of the given values. However, I am getting values corresponding to min()...
by Kazi1 Explorer in Splunk Search 07-06-2020
0 4
0
4
scottsavareseat
I'm trying to use the python sdk to build a custom search command. In my commands.conf, I have "chunked = true" set. ...
by scottsavareseat Path Finder in Splunk Search 07-06-2020
1 3
1
3
chris94089
We see lots of alerts right now.  So I thought I would develop a dashboard that quickly searches through the alert co...
by chris94089 Path Finder in Splunk Search 07-06-2020
0 1
0
1
rogueakula
Good morning! I noticed today that a couple of my devices stopped sending logs to Splunk a couple of hours ago. I wan...
by rogueakula Explorer in Splunk Search 07-06-2020
0 4
0
4
maxmukimov
Hello!I’m trying to replace product codes with product names like| replace “A1” with “Apple”, “A2” with “Grape”, “A3”...
by maxmukimov Explorer in Splunk Search 07-06-2020
0 2
0
2
rnikam1412
Here is my search: index=database action_id="CR" OR action_id="AL" database_name= "test" NOT (server_principal_name =...
by rnikam1412 Loves-to-Learn Everything in Splunk Search 07-06-2020
0 1
0
1
catherineang
The goal is to compare the events from this hour vs the past hour. And then display a table by sourcetype, host, perc...
by catherineang New Member in Splunk Search 07-06-2020
0 5
0
5
christoffertoft
I have the same problem as in the link below: [https://answers.splunk.com/answers/336929/how-can-i-get-time-picker-e...
by christoffertoft Communicator in Splunk Search 07-06-2020
0 12
0
12
joe06031990
Good afternoon,I am trying to Masking an email address at the search head level I have tried using Rex and sed but ca...
by joe06031990 Communicator in Splunk Search 07-06-2020
0 3
0
3
gent79
I have a boat load of log files, whose name contains the timestamp, like this : /DATA/show_cpu.2016101908.gz /DATA/s...
by gent79 Observer in Splunk Search 07-06-2020
0 4
0
4
moogmusic
I'm trying to use a Subsearch to set the span parameter in timechart - other posts have suggested something like this...
by moogmusic Path Finder in Splunk Search 07-06-2020
0 4
0
4
christay
Hi Guys,Can i check how can i craft the query given the following condition.I have 2 indexes IndexA and IndexB with t...
by christay New Member in Splunk Search 07-06-2020
0 1
0
1
Sunil2020
Dear Splunkers,I am trying to achieve below and would like to ask for help in suggestions, solutions or pointers for ...
by Sunil2020 Explorer in Splunk Search 07-06-2020
0 4
0
4
Noob_splunker
Hi,Below is the result from my transaction command. How do I extract only one date from the  multiple dates below?I o...
by Noob_splunker Explorer in Splunk Search 07-05-2020
0 5
0
5
joesrepsolc
Doing a search that has a wide range of return values... and the largest one will not display on my chart! I have 7 e...
by joesrepsolc Communicator in Splunk Search 07-04-2020
0 4
0
4
aaroncherian
I am trying to create a table something like this that will fetch the data for all the events for the past 7 days. I ...
by aaroncherian Path Finder in Splunk Search 07-04-2020
0 4
0
4
Noob_splunker
Hi there,I want to group the filter into Full Outage or Partial Outage.filter impact3G OutageFull OutageCell BlockedP...
by Noob_splunker Explorer in Splunk Search 07-04-2020
0 2
0
2
ssjabid
Hi, I am trying to create new field values from my json log base on the values that appear under a particular fieldSo...
by ssjabid Explorer in Splunk Search 07-04-2020
0 3
0
3
tehrhart
We're extracting a field from our logs that is base64 encoded and want to display it in its decoded form when searchi...
by tehrhart Engager in Splunk Search 07-03-2020
3 10
3
10
Masterbaker
Hi there! I'd like to display a single value (with trend and sparkline) for displaying the count of specific events...
by Masterbaker Explorer in Splunk Search 07-03-2020
0 5
0
5
parthibansg20
Hi All,I am using Splunk Enterprise 7.3.6 and access to my application occurs with ID (can be a number or string with...
by parthibansg20 Engager in Splunk Search 07-03-2020
0 3
0
3
nisu
Hi Team, We are using Add-on builder in our Add-on and used Additional Settings tab for configuring username and pass...
by nisu Explorer in Splunk Search 07-03-2020
0 0
0
0
ToniHuynh
Hi all,I would like to extract the IP of the client: from the below Message.Message=Internal event: A client issued a...
by ToniHuynh Explorer in Splunk Search 07-02-2020
0 2
0
2
Get Updates on the Splunk Community!

Observability Simplified: Combining User Experience, Application Performance & ...

Tech Talk Observability Simplified: Combining User Experience, Application Performance & Network ...

Event Series May & June: From Network Visibility to Service Intelligence

Unifying the Network: Moving from Alert Noise to Service Intelligence with Splunk ITSI In today’s hybrid ...

Global Splunk User Group Events: May + June 2026

Your Splunk Community Awaits: Discover Upcoming User Group Events Worldwide    Staying ahead in the fast-paced ...