Splunk Search

Splunk Search
Community Activity
Richy_s
How do I run a search against a sourcetype (which is very low volume), and display a custom text when there are 0 eve...
by Richy_s Path Finder in Splunk Search 07-04-2024
0 13
0
13
HankinAlex
I am trying to create a props.conf to pass a custom timestamp. To do so I wanted to upload data and use the set sourc...
by HankinAlex Explorer in Splunk Search 07-04-2024
0 2
0
2
Orange_girl
Hello Splunk community, One of my indexes doesn't seem to have indexed any data for the last two weeks or so. This is...
by Orange_girl Loves-to-Learn Everything in Splunk Search 07-04-2024
0 7
0
7
DATT
I have a field in my data named severity that can be one of five values: 1, 2, 3, 4, and 5.I want to chart on the fol...
by DATT Path Finder in Splunk Search 07-04-2024
0 4
0
4
rikinet
I have a dashboard with multiple line charts showing values over time. I want all charts to have the same fixed time ...
by rikinet Path Finder in Splunk Search 07-03-2024
0 5
0
5
RamMur
I'm looking to get all failed event log based on a field , and then trying to find the success event log for the same...
by RamMur Explorer in Splunk Search 07-03-2024
0 2
0
2
Codie
Hi, I would like to create a time chart for a specified time suppose 8AM to 2PM everyday for last 30 days. I am able ...
by Codie Engager in Splunk Search 07-03-2024
0 2
0
2
araiv1998
Hello, I am looking to create a report of a search. I have a requirement of tracking user logon to window machines (A...
by araiv1998 Engager in Splunk Search 07-02-2024
0 9
0
9
Silah
HiPut simply, I am trying to wrap my head around how I can configure an alert to trigger is a metric is X% higher or ...
by Silah Path Finder in Splunk Search 07-02-2024
0 6
0
6
neerajs_81
HI Team, i am caught in a maze of how to use stats function to get the data in expected format i want. Sample data.  ...
by neerajs_81 Builder in Splunk Search 07-02-2024
0 4
0
4
Bhavika
I want to write the query which will number of count the event occurred and time taken for that. This is the log  -lo...
by Bhavika Loves-to-Learn in Splunk Search 07-02-2024
0 7
0
7
scout29
I am trying to get the ingestion per day in Terabytes for each index. I am using the below search which works, howeve...
by scout29 Path Finder in Splunk Search 07-01-2024
0 3
0
3
a508184
I need to display priority data for 7 days with the percentage, however am unable to display it in 7 days. My below q...
by a508184 Explorer in Splunk Search 07-01-2024
0 7
0
7
devsru
Dear All,I want to setup an alert in an event. The event contains three timestamps, New Event time, Last update, and ...
by devsru Explorer in Splunk Search 07-01-2024
0 3
0
3
AliMaher
I Have used the below two events to test the SOURCE_KEY =   <132>1 2023-12-24T09:48:05+00:00 DCSECIDKOASV02 ikeyserve...
by AliMaher Path Finder in Splunk Search 07-01-2024
0 3
0
3
LearningGuy
How to convert CSV lookup to DBXlookup?The lookup using CSV worked just fine.The CSV was moved to the database and wh...
by LearningGuy Motivator in Splunk Search 06-30-2024
0 1
0
1
ralam
Hi Team,What I'm trying to achieve: Find the consecutive failure events followed by a success event. | makeresults | ...
by ralam Explorer in Splunk Search 06-30-2024
0 2
0
2
Cozy
Hello,I need some help with adjusting an alert for detecting a password spray attack using Auth0 logs in Splunk. What...
by Cozy Loves-to-Learn in Splunk Search 06-30-2024
0 3
0
3
Oum
hello i'm beginner in splunk. Currently, i'm working with splunk entreprise i want to retrieve microservices depandan...
by Oum New Member in Splunk Search 06-30-2024
0 5
0
5
jenkinsta
I have an inputlookup called adexport.csv thats big...trying to join and match two fields in the lookup UserName and ...
by jenkinsta Path Finder in Splunk Search 06-29-2024
0 2
0
2
gballanti
I need help regarding a join from events based on different sourcetype (same index) that are related by the same valu...
by gballanti Explorer in Splunk Search 06-28-2024
1 13
1
13
RamMur
Hello,  I'm fairly new to splunk, trying to search using where clause and filter the results. The query is running lo...
by RamMur Explorer in Splunk Search 06-28-2024
0 3
0
3
Mick_OBrien
Hi All,We have an application that gets events in from an external party but occasionally we see out of sequence even...
by Mick_OBrien Path Finder in Splunk Search 06-28-2024
0 3
0
3
ChuckM
I am trying to get a table showing the number of days a user was active in the given time period.  I currently have a...
by ChuckM Engager in Splunk Search 06-28-2024
0 4
0
4
cherrypick
As the title suggests I have a dashboard with various panels and wondering if it's possible to export a single panel ...
by cherrypick Path Finder in Splunk Search 06-27-2024
0 0
0
0
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...