Splunk Search

Splunk Search
Community Activity
JDukeSplunk
So I have some data that I'm trying to extract the application name from. These are Citrix ICA syslog events. Here'...
by JDukeSplunk Builder in Splunk Search 03-26-2020
0 4
0
4
s20071035
I've got data say in following format (*there may be more than three types of exception) Name,Exception,count ...
by s20071035 Engager in Splunk Search 03-26-2020
0 3
0
3
sunk
Hi, When I perform any search in Splunk, the left side has Interesting Fields and Selected fields showing a list of ...
by sunk New Member in Splunk Search 03-26-2020
0 0
0
0
saneja
Hello, One of the dashboards has a makeresults query like below, with about 250 append statements. | makeresults| e...
by saneja New Member in Splunk Search 03-26-2020
0 2
0
2
muizash
36,03/26/20,13:12:04,Packet dropped because of Client ID hash mismatch or standby server.,IP,,B88584ADE973,,0,6,,,,,,...
by muizash Path Finder in Splunk Search 03-26-2020
0 1
0
1
tsa_asap
Hi all, I have a subsearch that returns me the delta between two events. The problem is, sometimes the two events I...
by tsa_asap Engager in Splunk Search 03-26-2020
0 2
0
2
jerinvarghese
Hi All, Pleas help me in getting a query to display the time difference from the events that mentioned below index=op...
by jerinvarghese Communicator in Splunk Search 03-26-2020
0 7
0
7
rkrish71
Hi, I am looking for some help on the below query. I have list of APIs which has different parameters in the URL. I ...
by rkrish71 New Member in Splunk Search 03-26-2020
0 8
0
8
muizash
So I have to update my datetime.xml file in Splunk because timestamp extraction problem after 1jan 2020. According t...
by muizash Path Finder in Splunk Search 03-26-2020
0 2
0
2
kanahayashi
Hello. Please help me.... I failed to get the table "sys_audit_delete" via Splunk Add-on for ServiceNow. I succeeded ...
by kanahayashi Explorer in Splunk Search 03-25-2020
1 8
1
8
mungerc
Hi all, I am trying to get a count of all users signed into our VPN. While this is easy, i need it broken out based ...
by mungerc New Member in Splunk Search 03-25-2020
0 1
0
1
mbasharat
Hi, I am tracking my assets with vulnerabilities. My minimized sample query is: index=vuln | stats dc(dns) as impac...
by mbasharat Builder in Splunk Search 03-25-2020
0 4
0
4
viswanathsd
0
10
tmanuel1
Hi guys! I am pretty new to this and in researching I have not found what I am looking for or did not recognize the a...
by tmanuel1 New Member in Splunk Search 03-25-2020
0 2
0
2
eprince
Is it possible to filter the logs based on http header value? I am conducting a load testing by using Jmeter. While ...
by eprince New Member in Splunk Search 03-25-2020
0 0
0
0
alphanumeric85
Hello, I'm trying to figure out how to search and compare values in subsequent/sequential JSON messages where a user ...
by alphanumeric85 Explorer in Splunk Search 03-25-2020
0 8
0
8
shashankjuloori
There is a requirement in which i need to display total count and errors(in total count). error message is in raw tex...
by shashankjuloori New Member in Splunk Search 03-25-2020
0 10
0
10
jwalzerpitt
We are using pulse secure as our VPN solution and I'm looking to build a search that tracks concurrent users per hour...
by jwalzerpitt Influencer in Splunk Search 03-25-2020
0 9
0
9
gurkiratsingh
Hi am getting the earliest tie through a text box and I want to set the latest time automatically to (earliest+24h). ...
by gurkiratsingh Explorer in Splunk Search 03-25-2020
0 2
0
2
i17065
Hello community i hope you can help me, I'm new here... The field "moid" for 'folder' has the same values like th...
by i17065 Engager in Splunk Search 03-25-2020
0 0
0
0
shugup2923
I am having below event - Subject: Security ID: EMEA\abc Account Name: XXXXXXX Account Domai...
by shugup2923 Path Finder in Splunk Search 03-25-2020
0 3
0
3
manish_singh_77
Hi All, I am trying to write a query where we have to check all the jobs in success or not built status before the j...
by manish_singh_77 Builder in Splunk Search 03-24-2020
0 7
0
7
daniel333
All, Any service you recommend for doing domain classification and lookups against my Squid proxy logs? Just genera...
by daniel333 Builder in Splunk Search 03-24-2020
0 1
0
1
tb5821
I'm using a rex to extract a field called field1 from my search... how do I take all the results of field1 and call o...
by tb5821 Communicator in Splunk Search 03-24-2020
0 3
0
3
bhavneeshvohra9
Hi all, I have 10 events containing events from events 1,event2,event 3,....event 10. I need to cobine events2,3,4 an...
by bhavneeshvohra9 New Member in Splunk Search 03-24-2020
0 2
0
2
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...