Splunk Search

Splunk Search
Community Activity
genesiusj
Hello, I have a search that generates over 50's rows and 12 columns. I need to create a tile for each row. I thought ...
by genesiusj Builder in Splunk Search 03-06-2020
0 7
0
7
mbasharat
Hi, I have time format as: 2019-10-08 15:24:40.132 UTC I used eval to strip it to: 2019-10-08 15:24:40 I need to c...
by mbasharat Builder in Splunk Search 03-06-2020
0 2
0
2
jip31
hi The search below returns me 558 events `CPU` | stats values(SITE) as SITE count(process_cpu_used_percent) as "N...
by jip31 Motivator in Splunk Search 03-06-2020
0 1
0
1
yepyepyayyooo
Anyone know of a way to only return the matching values of a sub search to the string array field in the parent searc...
by yepyepyayyooo New Member in Splunk Search 03-06-2020
0 4
0
4
rajiv_r
How can i exclude a single value from a field which generates multiple value in the single event.for eg- if in a sing...
by rajiv_r Explorer in Splunk Search 03-06-2020
0 4
0
4
shugup2923
Hi Guys, There is a csv which gets updated every day once with details such as- VMName Group CPU Memory Storage Pow...
by shugup2923 Path Finder in Splunk Search 03-06-2020
0 4
0
4
ketan_chanana
Hi, I need to add colour code wise legend for my Pie chart visualization in a same way that Bar/Column chart has on ...
by ketan_chanana Engager in Splunk Search 03-06-2020
0 2
0
2
tsheets13
I have been asked to create an alert that looks at the index sizes (all indexes) for today, and compare them to the s...
by tsheets13 Communicator in Splunk Search 03-06-2020
0 5
0
5
alekseisaiko
Hi there!I'm running this query index="staging" |eval raw_len=len(_raw) | eval raw_len_gb = raw_len/1024/1024/1024 | ...
by alekseisaiko Path Finder in Splunk Search 03-06-2020
0 5
0
5
mdeterville
Hi SMEs: I would like to define a print event type to differentiate Remote Prints from Office Print jobs. From my p...
by mdeterville Path Finder in Splunk Search 03-05-2020
0 4
0
4
asharmaeqfx
Hi Splukers, I have a requirement to search for some filenames and display the missing files as per the date. Thus, ...
by asharmaeqfx Path Finder in Splunk Search 03-05-2020
0 6
0
6
hagjos43
I have a time in the format of: 3:21:34 AM 12/8/2014 I'm trying to convert this to epoch time. Can anyone lend a h...
by hagjos43 Contributor in Splunk Search 03-05-2020
4 10
4
10
ashanka
2/11/2020 11:49:00 AM 2/11/2020 9:55:00 PM How to convert this into Secs.. Conersion of AM and PM is not working a...
by ashanka Explorer in Splunk Search 03-05-2020
0 2
0
2
drewski3420
I'm trying to convert string data in my fields to proper case e.g. josh smith to Josh Smith. Is there any function in...
by drewski3420 New Member in Splunk Search 03-05-2020
0 7
0
7
tsheets13
I have a value in my events called type, which is a single digit integer (1, 2, 3, etc.) I would like to create a new...
by tsheets13 Communicator in Splunk Search 03-05-2020
0 2
0
2
maria_n
Hi Everyone Sample logs: {"kubernetes":{"container_name":"sign-template-services","namespace_name":"merch-ps-signs-...
by maria_n Explorer in Splunk Search 03-05-2020
0 3
0
3
harishalipaka
Hi All, I have data like below Drive Free_Space C:,D: 500 GB,450 GB E:,D: 25...
by harishalipaka Motivator in Splunk Search 03-05-2020
0 3
0
3
cisaksen
The requirements state that all cluster systems must run the same OS. Does this include the same OS version level of...
by cisaksen Explorer in Splunk Search 03-05-2020
0 1
0
1
julianniemeyer
I am experimenting on a test system and have a simple shell script that consists of one line to call Python 3 to run ...
by julianniemeyer New Member in Splunk Search 03-05-2020
0 0
0
0
DomenicoFumarol
Hello everyone,I have the challenge to compare two date fields, one coming from a search and the other one is reporte...
by DomenicoFumarol Explorer in Splunk Search 03-05-2020
0 2
0
2
tahasefiani
Hello, i Have this query that i want to improve | loadjob savedsearch="myquery" | where (strftime(_time, "%Y-%m-%d"...
by tahasefiani Explorer in Splunk Search 03-05-2020
0 7
0
7
anouar_jben
Hello, I have the below query which works fine: {My search} | rename user_id as User | stats max(asctime) as "Last ...
by anouar_jben Explorer in Splunk Search 03-05-2020
0 5
0
5
jwalzerpitt
How would I calculate the percentage increase/decrease, for indexes on a per-day basis? Thx
by jwalzerpitt Influencer in Splunk Search 03-05-2020
1 8
1
8
iqbalintouch
Hi, is there anyway to pull a report to get the data of log where DEBUG level log is enabled, based on the index and...
by iqbalintouch Path Finder in Splunk Search 03-04-2020
0 0
0
0
jiaqya
i would like one user to edit xml code or change query on the panels/dashboard of his app alone. what is the capabil...
by jiaqya Builder in Splunk Search 03-04-2020
0 2
0
2
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...