Splunk Search

Splunk Search
Community Activity
itsmevic
I'm running the below query across the network and would like it to pinpoint that search towards two users rather tha...
by itsmevic Communicator in Splunk Search 06-24-2020
0 1
0
1
AndySplunks
Does Splunk generate logs when a lookup file is modified? I have some searches that use lookup files. I'd like to mo...
by AndySplunks Communicator in Splunk Search 06-24-2020
0 2
0
2
mrhodes93
I'm trying to track the elapsed time it takes a user to complete a web application based on the earliest and latest o...
by mrhodes93 Explorer in Splunk Search 06-24-2020
0 0
0
0
thinhdinh
Hello Splunk Experts!I have a string like belowrex " - - (?<text>foo|bar) " | .....I want to take the text when a wor...
by thinhdinh Path Finder in Splunk Search 06-24-2020
0 5
0
5
mtatulda
I am trying to create a PDF and CDF with limited amount of buckets:... | bucket bins=10 fs as fsBinned| stats count(f...
by mtatulda New Member in Splunk Search 06-24-2020
0 0
0
0
thenino
Hello Splunk Community,We have two types of logs being forwarded to splunk a simple .log file and json logs that are ...
by thenino Loves-to-Learn Lots in Splunk Search 06-24-2020
0 0
0
0
karunagaraprabh
Hi, i am new to splunk, i need to find the number of days different between indexed time date and the field exists da...
by karunagaraprabh Explorer in Splunk Search 06-24-2020
0 14
0
14
moogmusic
I'm trying to use the CIM to look at some firewall data in the InfoSec app. I've setup the event tagging and field al...
by moogmusic Path Finder in Splunk Search 06-24-2020
0 0
0
0
karunagaraprabh
When i try to find the difference between two epoc1)find the days range i get blank values2) and i need to filter onl...
by karunagaraprabh Explorer in Splunk Search 06-24-2020
0 2
0
2
karunagaraprabh
Hi, i need index time and host time to repeat for each data for host, printedA_epoch & printedb_epoch, how can i achi...
by karunagaraprabh Explorer in Splunk Search 06-24-2020
0 6
0
6
wblewis
Hello,I am looking for some help on status evaluation. What I am trying to do is create a eval column where you eithe...
by wblewis Engager in Splunk Search 06-24-2020
0 5
0
5
kirrusk
i'm trying to sum one of the fields values based on the other field values.For exampleSource    Remediated      Space...
by kirrusk Communicator in Splunk Search 06-24-2020
0 3
0
3
MarcRiese
My search consists solely of a call to a search macro. It looks like this:`blabla1(host="blabla2", mon-host="blabla3"...
by MarcRiese Explorer in Splunk Search 06-23-2020
0 5
0
5
ksharma7
Well , I want to create an alert which alert me whenever there is spike in Errors. Currently we are comparing say pas...
by ksharma7 Path Finder in Splunk Search 06-23-2020
0 2
0
2
Puliyo
When multivalue field is given as field-list for transaction, transaction does not attempt to combine the events desp...
by Puliyo Engager in Splunk Search 06-23-2020
0 2
0
2
90509
Hi Team,I tried all possibilities to extract the data from index which are matched field values with lookup table .th...
by 90509 Engager in Splunk Search 06-23-2020
0 0
0
0
mah
Hi, I have a performance issue with a query using a "join" command.The problem is that the first search using a time ...
by mah Builder in Splunk Search 06-23-2020
0 3
0
3
youngrap
I have numeric data.I'd like to group the data.It is easy to use 'Kmeans' command, but it cannot be necessarily k=3.I...
by youngrap Explorer in Splunk Search 06-23-2020
0 1
0
1
leymandudu
Greetings, I am new to Splunk and I have an assignment where I needed to extract data based on ticket number and time...
by leymandudu Explorer in Splunk Search 06-23-2020
0 8
0
8
jmasat
Team,I would like assistance with creating regex,specifically to blacklist 1 host name - happens to be the spunk serv...
by jmasat Observer in Splunk Search 06-23-2020
0 5
0
5
gaok123
Still new to Splunk, seeking for some help. I have a index=account_Information, with account_number, cell_number, etc...
by gaok123 Observer in Splunk Search 06-23-2020
0 9
0
9
saotaigiri
Please i need a script that can give result when there is an idle logger, or when the fowarder isnt feed any informat...
by saotaigiri Path Finder in Splunk Search 06-23-2020
0 1
0
1
splunkettes
Years back the outputlookup command would create a csv lookup file in the user's app folder making it Private and own...
by splunkettes Path Finder in Splunk Search 06-23-2020
0 4
0
4
spkriyaz
Hi,I am looking for solution to encircle the entire row with a red line instead of highlighting the table row. I have...
by spkriyaz Path Finder in Splunk Search 06-23-2020
0 1
0
1
mariamathewtel
Hi, I have a table like below where multiple entries of same ticket numbers are displaying as these are taken from th...
by mariamathewtel Explorer in Splunk Search 06-23-2020
0 6
0
6
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...