Splunk Search

Splunk Search
Community Activity
Inayath_khan
Hi Folks, Can anyone please help in forming the query for internal splunk components up and downtime reporting, i f...
by Inayath_khan Path Finder in Splunk Search 06-28-2020
0 2
0
2
smahuja
Hi, I have two different queries, I want to join two columns.Below is my query: `macro`msg="Finish import*" OR msg = ...
by smahuja Explorer in Splunk Search 06-28-2020
0 1
0
1
thedonaldblake
Hello - I am a Splunk newbie.datetimeSrc_machine_nameCol1Col31/1/2020Machine1Value1Value21/2/2020Machine1Value1Value5...
by thedonaldblake Engager in Splunk Search 06-28-2020
0 1
0
1
vplunk
Is there a method to do "AND" while writing regex instead of "OR" . As when i write a reg and add to regex _raw="expr...
by vplunk Explorer in Splunk Search 06-28-2020
0 2
0
2
rakes568
Lets say my data is like this: 8/27/12 10:30:00.000 AM server=test1 and status=Down 8/27/12 10:29:00.000 AM server=t...
by rakes568 Explorer in Splunk Search 06-28-2020
1 5
1
5
snagatho
Hellois there a length limit in the search.? I have been using NOT operator in my query extensively due to error code...
by snagatho New Member in Splunk Search 06-27-2020
0 1
0
1
whoami_root
I'm trying to delete dups using this method here: https://community.splunk.com/t5/Splunk-Search/How-to-delete-duplica...
by whoami_root Observer in Splunk Search 06-27-2020
0 1
0
1
seva98
I have list of around 100 hosts that are sending data to index and I would love to return a table with hostname and s...
by seva98 Path Finder in Splunk Search 06-26-2020
0 2
0
2
spkriyaz
Hi,I have used the below saved search to append the data every 15 mins into the lookup file. I use the lookup file in...
by spkriyaz Path Finder in Splunk Search 06-26-2020
0 6
0
6
sideview
(I am reposting this question from email, with permission from the person who emailed)I need to basically join 3 inde...
by SplunkTrust SplunkTrust in Splunk Search 06-26-2020
0 5
0
5
john_byun
I have the following query for PAN firewall logs:index=pan app=ssl| stats count by srcThis would give me a list of al...
by john_byun Path Finder in Splunk Search 06-26-2020
0 3
0
3
gopiven
Hi Splunk ExpertsI've created a summary index where it contains 6 eval cases, for example:eval 1=case(match(something...
by gopiven Explorer in Splunk Search 06-26-2020
0 3
0
3
Wheresmydata
Hi Splunkers,I have different queries that get the age of a ticket only counting the business hours. I need to do dif...
by Wheresmydata Explorer in Splunk Search 06-26-2020
0 3
0
3
clgzcom
This site can’t be reached localhost refused to connect. Did you mean http://localhost8000.com/? Search Google for lo...
by clgzcom New Member in Splunk Search 06-26-2020
0 12
0
12
mrhodes93
Considering the following two messages: sourcetype="PCF:log" cf_app_name=app1 msg="launch processing started" UserID:...
by mrhodes93 Explorer in Splunk Search 06-26-2020
0 3
0
3
medsy
how can i read or get data from .txt file without monitoring(indexing) the file data.
by medsy Explorer in Splunk Search 06-26-2020
0 1
0
1
kirrusk
Trying to display Percentages on Timechart , but it's not working. Base search | fields APP Usage_kb | eval Usage_gb=...
by kirrusk Communicator in Splunk Search 06-26-2020
0 3
0
3
kuriakose
aid                              SHAabc                          12345                                  12345ujdk    ...
by kuriakose Explorer in Splunk Search 06-26-2020
0 2
0
2
priyaramki16
Hi,I am writing a search to create 3 columns of data P,F and C based on Teams.The table which I expect is thisTeamsPC...
by priyaramki16 Path Finder in Splunk Search 06-26-2020
0 2
0
2
smahuja
Hello, I have a timechart with multiple fields, I want to append existing query or add new query to display one field...
by smahuja Explorer in Splunk Search 06-26-2020
0 3
0
3
driva
Hi everyone,I'd be eternally grateful if someone could help point me in the right direction here. I'm trying to outpu...
by driva Path Finder in Splunk Search 06-26-2020
0 1
0
1
thinhdinh
Hi Splunk experts,I am a new face here. I have a task for multiple alerts creating. I am wondering is it possible to ...
by thinhdinh Path Finder in Splunk Search 06-26-2020
0 9
0
9
okheggdal
I have an ID among other things that is extracted by Splunk DB Connect from a mySQL database.  Whats special with the...
by okheggdal Explorer in Splunk Search 06-25-2020
0 0
0
0
infotork
fields in sourcetype1 --> A,B,C, txid ( always has a value)fields in sourcetype2--> D,E,F, txid ( may occur value for...
by infotork Explorer in Splunk Search 06-25-2020
0 1
0
1
vijaysubramania
Hi,Need one Help. I have the below mentioned requestPath where I am able to capture the whole path..But can't take a ...
by vijaysubramania Path Finder in Splunk Search 06-25-2020
0 4
0
4
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

Data Management Digest – May 2026

Welcome to the May 2026 edition of Data Management Digest!   As your trusted partner in data innovation, the ...