Splunk Search

Splunk Search
Community Activity
jojocalman
Hi, I'm using the following option for a table in a dashboard: <option name="count">xx</option> and it successful...
by jojocalman Engager in Splunk Search 04-08-2020
1 7
1
7
atownson
Greetings experts, I have an alert configured to output the search results to a lookup file. And I need to be able t...
by atownson Explorer in Splunk Search 04-08-2020
0 0
0
0
sarwshai
Hi All, I need to create a query where user access a same destination from 5 or more sources, also in that query opp...
by sarwshai Communicator in Splunk Search 04-08-2020
0 5
0
5
nathanluke86
I am trying to get exactly 10 digits which might be between white spaces or symbols etc: 1234567890 ,234567890 , 12...
by nathanluke86 Communicator in Splunk Search 04-08-2020
0 6
0
6
abilann
Team, Can anyone please help me to understand the below regular expression used in field extraction? (?i)CPU_COUNT\...
by abilann New Member in Splunk Search 04-08-2020
0 6
0
6
MOHITJOSHI
i have a field "avg_time" which i want to display in descending order. tried sort -avg_time but didn't worked eval n...
by MOHITJOSHI Engager in Splunk Search 04-07-2020
0 1
0
1
mnarmada
Hello, I have a data from two different sourcetypes. In that data, I have two specific columns where in I have to ch...
by mnarmada Path Finder in Splunk Search 04-07-2020
0 6
0
6
uhaba
We noticed that Microsoft OWA logs produce a repeating field. How can we make them into individual ones instead of ju...
by uhaba Explorer in Splunk Search 04-07-2020
0 3
0
3
rashi83
I am using HTTP events collector on a search head directly. On this SH I am using API token to connect to get OKTA lo...
by rashi83 Path Finder in Splunk Search 04-07-2020
0 1
0
1
willcwhite
I have an app on a deployment server that takes in XML data, this app includes a props.conf with KV_MODE=xml. When I...
by willcwhite Explorer in Splunk Search 04-07-2020
0 1
0
1
leandromatperei
Hello everyone, I have the attached file that is generated every night through my client's internal system and I nee...
by leandromatperei Path Finder in Splunk Search 04-07-2020
0 6
0
6
antb
Hi and thank you in advance. I've simplified the problem for brevity sake. I'm trying to return multiple fields by ...
by antb Path Finder in Splunk Search 04-07-2020
0 2
0
2
HattrickNZ
hi there THis is my sample data. I want to use the heat map option and highlight the max and min per each column. S...
by HattrickNZ Motivator in Splunk Search 04-07-2020
0 1
0
1
anz999
I would like to do some math operation of retrieved count of each values. Eg: 318*5.5 + 418*2.5 + 54*5 + 83*2 and g...
by anz999 Loves-to-Learn Lots in Splunk Search 04-07-2020
0 3
0
3
iiooiiooiioo
I have this splunk search: host=app-dev-001 terminating | convert timeformat="%Y-%m-%d" ctime(_time) AS date | sort ...
by iiooiiooiioo Explorer in Splunk Search 04-07-2020
0 1
0
1
Jarohnimo
Below are clamav logs, I would like to create two new fields. one called: log_level one callled: message log_level ...
by Jarohnimo Builder in Splunk Search 04-07-2020
0 1
0
1
pgadhari
I am getting below error when the page first loads, after that when I manually select "Last 1 week" in the dropdown, ...
by pgadhari Builder in Splunk Search 04-07-2020
0 4
0
4
jagdeepgupta813
HI All, Please help me to debug the issue to join two searches based on common field. I have two indexes which has ...
by jagdeepgupta813 Explorer in Splunk Search 04-07-2020
0 3
0
3
ryastrebov
Hello! Which method is faster? It seemed to me that the rex method is very slow for a large number of events.
by ryastrebov Communicator in Splunk Search 04-07-2020
1 7
1
7
ohbuckeyeio
Is there a way to dynamically pass a comparison operator as a variable without a macro? I am looking to achieve some...
by ohbuckeyeio Communicator in Splunk Search 04-07-2020
0 4
0
4
Shan
Dear Friends, Need you're help on writing a rex. As per my requirement. what ever value comes before a space need t...
by Shan Builder in Splunk Search 04-07-2020
0 4
0
4
hegdevageesh
I have 2 log files from different sources. Both log files have statements either indicating a "Transaction-Start" or...
by hegdevageesh New Member in Splunk Search 04-07-2020
0 3
0
3
jerinvarghese
Hi All, need help in getting a regex code for the below message. 2020-04-04T15:08:01+00:00 usdaldc <44> %WAAS-HTTPAO...
by jerinvarghese Communicator in Splunk Search 04-07-2020
0 3
0
3
Sfry1981
I have the below search: index=cd source=jenkins pr_number=* | stats count as Total , earliest(_time) as start, lat...
by Sfry1981 Communicator in Splunk Search 04-07-2020
0 2
0
2
Shashank_87
Hi, I am dealing with a situation here. Trying to join 2 queries to find out the peak hour volume in last 90 days on ...
by Shashank_87 Explorer in Splunk Search 04-07-2020
0 9
0
9
Get Updates on the Splunk Community!

Application management with Targeted Application Install for Victoria Experience

  Experience a new era of flexibility in managing your Splunk Cloud Platform apps! With Targeted Application ...

Index This | What goes up and never comes down?

January 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Splunkers, Pack Your Bags: Why Cisco Live EMEA is Your Next Big Destination

The Power of Two: Splunk + Cisco at "Ludicrous Scale"   You know Splunk. You know Cisco. But have you seen ...
Top Solution Authors