Splunk Search

Splunk Search
Community Activity
veerendra_modi
Hi Team, I have a KPI with split by entity say "Ent1". I have made a correlation search using this KPI and in the tr...
by veerendra_modi Loves-to-Learn in Splunk Search 05-21-2020
0 2
0
2
keyu921
Message="Internal event: Function ldap_search entered.SID: S-1-5-18Source IP: 127.0.0.1:25855Operation identifier: 68...
by keyu921 Explorer in Splunk Search 05-21-2020
0 5
0
5
patra966
I want to display the text of a column of a table in one line. After hover to it, it should show whole the descriptio...
by patra966 Path Finder in Splunk Search 05-20-2020
0 0
0
0
Vfinney
I'm having no luck building a regex to match cs_usernames. What I'm looking for are two separate searches both base...
by Vfinney Observer in Splunk Search 05-20-2020
0 2
0
2
gorosco
Got a cenario where timechart returned me a column named 'VALUE' where I don't have a value=VALUE in my logs as part ...
by gorosco Engager in Splunk Search 05-20-2020
0 2
0
2
splunkreal
Hello guys, is it OK to use srchMaxTime = 9000, it looks like it does 9000 seconds? In authorize.conf doc it asks f...
by splunkreal Influencer in Splunk Search 05-20-2020
0 2
0
2
hollybross1219
I found a different answer article with an example of what I'm trying to do, but I can't get it to work on my end. I...
by hollybross1219 Path Finder in Splunk Search 05-20-2020
0 1
0
1
nnimbe1
Hi All, I need to create a Splunk License usage report on a daily basis for all the reporting hosts. Can someone ple...
by nnimbe1 Path Finder in Splunk Search 05-20-2020
0 2
0
2
hollybross1219
My goal is to design an alert that will populate a table of raw results, but only when certain evaluation aggregates ...
by hollybross1219 Path Finder in Splunk Search 05-20-2020
0 5
0
5
warrenkobalt
Hi, Running into this error trying to setup the Streaming API: 04-03-2020 11:37:21.473 +0000 INFO  TcpOutputProc - ...
by warrenkobalt New Member in Splunk Search 05-20-2020
0 2
0
2
UMDTERPS
System OS ABC Windows-Server-2016 ABC Windows-10-Enterprise ABC Mac-OSX DEF Windows Server-2016 DEF Windows Server-2...
by UMDTERPS Communicator in Splunk Search 05-20-2020
0 4
0
4
vijaysubramania
Hi, I need to write a search that shows both the success percentage and failure count in a dual axis combo chart. ...
by vijaysubramania Path Finder in Splunk Search 05-20-2020
0 2
0
2
ben_leung
What are the differences between option "s" and "y"? index=_internal sourcetype=splunkd | rex mode=sed “s/idx=\d+\....
by ben_leung Builder in Splunk Search 05-20-2020
5 4
5
4
driva
Hi guys, I'm trying to work out what's wrong with my search (see below). I have a CSV lookup file with a list of nam...
by driva Path Finder in Splunk Search 05-20-2020
0 4
0
4
rsantkumar
I have 3 fields(Key, Version, Date) seperated by comma and records(can be many) seperated by ;(semicolon). Example...
by rsantkumar Observer in Splunk Search 05-20-2020
0 2
0
2
gmartinv
Hello Splunkers, I appended two different searches within Splunk. Then I created a table, and now I need to filter t...
by gmartinv New Member in Splunk Search 05-20-2020
0 3
0
3
hmallett
I have a lookup file, which is of the format: "Department", "Jan FY20", "Feb FY20", "Mar FY20", "Apr FY20" "Sales", ...
by hmallett Path Finder in Splunk Search 05-20-2020
0 6
0
6
andyk
I have event data in Splunk that look like this: 2013-02-14 11:32:46.4314 app=ws3 sev=INFO mid=1325748 , Fooo, Barr,...
by andyk Path Finder in Splunk Search 05-20-2020
0 5
0
5
slipinski
I'm trying to plot count of errors from last week per day and daily average value from month. The result from query b...
by slipinski Path Finder in Splunk Search 05-20-2020
0 7
0
7
jhonatancuartas
I have this JSON, and I want extrac the value when the name is "ca-channel" and value when name is "Ca-Request-Id" bu...
by jhonatancuartas New Member in Splunk Search 05-19-2020
0 2
0
2
xnx_1012
Hello is there another way to connect these two other than join... I have read that stats is faster than join ... is ...
by xnx_1012 Explorer in Splunk Search 05-19-2020
0 2
0
2
keyu921
I search the syntax and find Account_Domain result contains two column. How can I result first column so that I left ...
by keyu921 Explorer in Splunk Search 05-19-2020
0 3
0
3
charlesmeo
I have been participating in Splunk Advanced Searching and Reporting course and there is one thing that is mentioned ...
by charlesmeo Explorer in Splunk Search 05-19-2020
0 0
0
0
rbachu1
Hi Team, I have 10 APIs, which run on two distributed hosts, and I want to know the count of API calls on each of th...
by rbachu1 Explorer in Splunk Search 05-19-2020
0 4
0
4
paragvidhi
I have Below Splunk query to get some data from my logs index=myindex sourcetype=mysourcetype "search string" | sta...
by paragvidhi Engager in Splunk Search 05-19-2020
0 4
0
4
Get Updates on the Splunk Community!

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

All Work and No Play? Not at .conf26! Unwind at These Evening Events

Between hands-on technical sessions, keynote reveals, and diving into live architectures, .conf26 is packed ...

Join the Hackathon at .conf26 and build a No-Code AI agent

Join us for the AI Agent Buildathon, an in-person, three-hour hands-on Hackathon where you’ll use Splunk Agent ...
Top Solution Authors