Splunk Search

Splunk Search
Community Activity
jenkinsta
I have an inputlookup called adexport.csv thats big...trying to join and match two fields in the lookup UserName and ...
by jenkinsta Path Finder in Splunk Search 06-29-2024
0 2
0
2
gballanti
I need help regarding a join from events based on different sourcetype (same index) that are related by the same valu...
by gballanti Explorer in Splunk Search 06-28-2024
1 13
1
13
RamMur
Hello,  I'm fairly new to splunk, trying to search using where clause and filter the results. The query is running lo...
by RamMur Explorer in Splunk Search 06-28-2024
0 3
0
3
Mick_OBrien
Hi All,We have an application that gets events in from an external party but occasionally we see out of sequence even...
by Mick_OBrien Path Finder in Splunk Search 06-28-2024
0 3
0
3
ChuckM
I am trying to get a table showing the number of days a user was active in the given time period.  I currently have a...
by ChuckM Engager in Splunk Search 06-28-2024
0 4
0
4
cherrypick
As the title suggests I have a dashboard with various panels and wondering if it's possible to export a single panel ...
by cherrypick Path Finder in Splunk Search 06-27-2024
0 0
0
0
Substance82
When using regex how can I take a field formatted as "0012-4250" and only show the 1st and lat 3 digits? I tried the ...
by Substance82 Path Finder in Splunk Search 06-27-2024
0 3
0
3
Didalready
I am trying to get DeviceName and DeviceToken to var from 365 logfirst I use eval Device =mvindex('ModifiedProperties...
by Didalready Explorer in Splunk Search 06-27-2024
0 3
0
3
fzuazo
Greetings all,I'm trying to search inside a lookup table and I need to use a search command follow by an OR and regex...
by fzuazo Path Finder in Splunk Search 06-27-2024
0 5
0
5
cs97jb
I have a search that returns two results per day (a job's log entry of when it started and when it ended). I want to ...
by cs97jb New Member in Splunk Search 06-27-2024
0 1
0
1
chorn3567
Hi All! First post, super new user to Splunk. Have a search that i modified from a one a team member previously creat...
by chorn3567 Engager in Splunk Search 06-27-2024
0 4
0
4
Bhavika
I am writing a query which will give total time taken by a log/event for execution in milliseconds :index=xyz cluster...
by Bhavika Loves-to-Learn in Splunk Search 06-27-2024
0 1
0
1
kp_pl
Below is one of my fields. Quite complex,  I know It could be divided to more atomic values .. but it is not [Auditi...
by kp_pl Path Finder in Splunk Search 06-27-2024
0 5
0
5
Steve_A200
Hi, I need help in extracting the time gaps in a multi-value field represented as Date.My data output looks like this...
by Steve_A200 Path Finder in Splunk Search 06-26-2024
0 3
0
3
RanjiRaje
Removing FQDN from field valuesHi all, can anyone help me with framing the SPL query for the below requirement.I have...
by RanjiRaje Explorer in Splunk Search 06-26-2024
0 3
0
3
Chris_Urman
I have a lookup that has saved all apps installed on our deployment server. I need a query that checks all apps in th...
by Chris_Urman Engager in Splunk Search 06-26-2024
0 2
0
2
cjoelly
Hello,I have an index with events, where events belong to a transaction (transaction_id). I am interested in transact...
by cjoelly Loves-to-Learn in Splunk Search 06-26-2024
0 1
0
1
echalex
Hi, is there a way of ignoring the time zone in the searches? Currently, Splunk will reinterpret the difference in ti...
by echalex Builder in Splunk Search 06-26-2024
1 3
1
3
GEB
"Find event in one search, get related events by time in another search"Found some related questions but could not fo...
by GEB Explorer in Splunk Search 06-26-2024
0 6
0
6
anna11
Hello Splunk team, I was troubleshooting one query with anomalydetection command (https://docs.splunk.com/Documentati...
by anna11 New Member in Splunk Search 06-26-2024
0 0
0
0
nkavouris
I would like to extract the Message, Timestamp, and serial fieldsThen I would like to plot the target: Temp(315600), ...
by nkavouris Path Finder in Splunk Search 06-26-2024
0 4
0
4
LearningGuy
Let's say I have a database that is pulled from an application on a daily basis into Splunk and accessed via DBXquery...
by LearningGuy Motivator in Splunk Search 06-25-2024
0 1
0
1
SplunkExplorer
Hi Splunkers, currently we are managing an Enterprise Splunk environment previously managed by another company. As sa...
by SplunkExplorer Contributor in Splunk Search 06-25-2024
0 1
0
1
Substance82
How do I format a returned int into a phone number with the hyphen using the eval random function.  What I have so fa...
by Substance82 Path Finder in Splunk Search 06-25-2024
0 4
0
4
kp_pl
Still it find me difficult to understand logic of joining two indexes. Below the query which is almost suits my needs...
by kp_pl Path Finder in Splunk Search 06-25-2024
0 3
0
3
Get Updates on the Splunk Community!

Faster Insights with AI, Streamlined Cloud-Native Operations, and More New Lantern ...

Splunk Lantern is a Splunk customer success center that provides practical guidance from Splunk experts on key ...

Splunk Enterprise Security: Your Command Center for PCI DSS Compliance

Every security professional knows the drill. The PCI DSS audit is approaching, and suddenly everyone's asking ...

Developer Spotlight with Guilhem Marchand

From Splunk Engineer to Founder: The Journey Behind TrackMe    After spending over 12 years working full time ...
Top Solution Authors