Splunk Search

Splunk Search
Community Activity
canyin
Hi, I have a CSV file as lookup table which contains IP address and timestamp as fields. I need to perform a search ...
by canyin New Member in Splunk Search 04-03-2020
0 4
0
4
packland
I have a kvstore collection with two columns: "_key", and "last_online". The idea is that a search to update the valu...
by packland Path Finder in Splunk Search 04-03-2020
0 1
0
1
garciatdg
I am doing an experiment at home to capture Internet traffic for all of my devices in my house connected to my home w...
by garciatdg New Member in Splunk Search 04-03-2020
0 1
0
1
saurabh0912
Hi, We need to provide report, where we need to capture how long Splunk instance was down in past. Is it possible to ...
by saurabh0912 Path Finder in Splunk Search 04-03-2020
0 5
0
5
RobertRi
Hello Community! I have created a Dashboard with a dbxlookup command in the search. As an admin, i don't have proble...
by RobertRi Communicator in Splunk Search 04-03-2020
0 1
0
1
RobertRi
Hi! Could you please help me with that special case of search? This is my data:User App1. user1 appA2. user1 appB3. u...
by RobertRi Communicator in Splunk Search 04-03-2020
0 2
0
2
surekhasplunk
Hi, I want to know if there is some mechanism by which i can stop indexing a particular kind of data like if segment...
by surekhasplunk Communicator in Splunk Search 04-03-2020
0 8
0
8
dmenon
I have field username - they show up as username=mike and in some cases username=mike. with a dot in the end. How d...
by dmenon Explorer in Splunk Search 04-02-2020
0 5
0
5
leandromatperei
Hello everyone. I need to index the logs below and the example that is on my Dropbox link in a new sourcetype. The ...
by leandromatperei Path Finder in Splunk Search 04-02-2020
0 0
0
0
khojas02
I have the event as below: Mar 31 13:21:29 vg1 : %ASA-4-113019: Group = EMPLOYEE, Username = VAZQUD68, IP = ...*, Se...
by khojas02 Engager in Splunk Search 04-02-2020
0 4
0
4
mike000
What Query should i use to look for a certain directory in Linux Servers where the data is mounted? So basically sup...
by mike000 New Member in Splunk Search 04-02-2020
0 5
0
5
zayedaljaberi
Good evening, How to extract couple of subject email keywords from specific field "message_subject" Let's consider th...
by zayedaljaberi Engager in Splunk Search 04-02-2020
0 2
0
2
dzejsonborn
Hi Guys, I am trying to create search for: "Email received from malicious sender" Can somebody help to create such ...
by dzejsonborn New Member in Splunk Search 04-02-2020
0 6
0
6
TheMilkMan
We have an XML document import into Splunk.
by TheMilkMan New Member in Splunk Search 04-02-2020
0 1
0
1
roayers
Here is what I'm trying to accomplish. I have an csv file that I generated with an existing search that looks like th...
by roayers Explorer in Splunk Search 04-02-2020
0 5
0
5
robin272
I indexed data from a local directory. All of them are Web Access Logs so I set the sourcetype to access_combined. As...
by robin272 Engager in Splunk Search 04-02-2020
0 0
0
0
timyong80
Hello, I have a regex question. I have a field called "Container" and below are the examples of the values. I would ...
by timyong80 Explorer in Splunk Search 04-02-2020
0 10
0
10
JoshWhaley
At .conf this year, a new feature was showed off that allowed auto-formatting of SPL in the search bar with the press...
by JoshWhaley Path Finder in Splunk Search 04-02-2020
4 8
4
8
gurkiratsingh
Hi so suppose in my results there are 2 logs that are being retrieved. There is a status message which is either true...
by gurkiratsingh Explorer in Splunk Search 04-02-2020
0 2
0
2
karampatsis
Hello, My data are like this, sender , receiver, _time userA, userB, _time1 userB, userC, _time2 userB, userD, _tim...
by karampatsis Engager in Splunk Search 04-02-2020
0 0
0
0
rizwan0683
I would like to return all messages that contains tag 6410. Currently the below will return all messages even if they...
by rizwan0683 Path Finder in Splunk Search 04-02-2020
0 1
0
1
splunkThreatHun
I'm running a query which returns destination ip address of external traffic of a user in one column something like t...
by splunkThreatHun Engager in Splunk Search 04-02-2020
1 5
1
5
kimberlytrayson
Hi everyone, I am new to Splunk and still learning. Can someone please help me on the below query? My log file: 20...
by kimberlytrayson Path Finder in Splunk Search 04-02-2020
0 3
0
3
patra966
I have existing lookup csv. I want to update a row with new value. ID Name Location 549 Test_1 Bangalore 549 Tes...
by patra966 Path Finder in Splunk Search 04-02-2020
1 2
1
2
willadams
I have a Deploy server application that I use to control my "SYSLOG" server that receives logs from various other sou...
by willadams Contributor in Splunk Search 04-01-2020
0 6
0
6
Get Updates on the Splunk Community!

ATTENTION: We’re Moving! (AGAIN!)

The Splunk Community Slack is undergoing a system migration to keep our workspace secure and ...

Deep Dive: Optimizing Telemetry Pipelines in Splunk Observability Cloud

In this session, we will peel back the layers of Splunk Observability Cloud’s cost-optimization features. ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...