Splunk Search

Splunk Search
Community Activity
mattness
When you have a set of events that share a field with a numeric value, you can group those events together according ...
by mattness Splunk Employee Splunk Employee in Splunk Search 03-03-2020
1 2
1
2
koshyk
We have got a problem to find a list of 500+ client servers (but less than 1000), which are missing DNS entries. the ...
by koshyk Super Champion in Splunk Search 03-03-2020
1 4
1
4
KarunK
Hi All, I have a table like below (raw table), which shows count of request per 4 hours from two services over a per...
by KarunK Contributor in Splunk Search 03-03-2020
0 3
0
3
pench2k19
I have table with 3 field values as follows SOR Datafeed Status 1art xxx Met SLA 1art yyy Missed SLA 1art zzz Met SL...
by pench2k19 Explorer in Splunk Search 03-03-2020
0 9
0
9
rtalcik
Hi everyone, so I am wondering if it is possible to display my results as a string for computername instead of displa...
by rtalcik Path Finder in Splunk Search 03-03-2020
0 2
0
2
danielbb
Is there a way to identify when we are getting close to the concurrency limits? we know that there are error messages...
by danielbb Motivator in Splunk Search 03-03-2020
0 3
0
3
yannquique
I'm trying to eliminate results below a threshold with dc and it's not working. I only want to show versions that hav...
by yannquique New Member in Splunk Search 03-03-2020
0 5
0
5
splunkwar
Hi, I need to list all the Source Server Details (Hosname and IP Address) including log paths & Log File names whic...
by splunkwar Explorer in Splunk Search 03-03-2020
0 7
0
7
vikram1583
in my event i want to extract TLD's i want to extract: com news tech net org please help me with rex? thanks in a...
by vikram1583 Explorer in Splunk Search 03-03-2020
0 9
0
9
kripzadamas
I have the below JSON event with nested array in splunk -: { "items": [ { "parts": ...
by kripzadamas Engager in Splunk Search 03-03-2020
0 9
0
9
datorres
There are plenty of answers to the question of how to convert Hex into ASCII using a combination of rex/replace and u...
by datorres Explorer in Splunk Search 03-02-2020
0 1
0
1
itsmevic
I'm having to search across two indexes and am looking for a particular string of text, called "sampletext" Example:...
by itsmevic Communicator in Splunk Search 03-02-2020
0 6
0
6
p_b
I've spent the last week trying to figure out the answer to this myself in the documentation and in the questions. I'...
by p_b New Member in Splunk Search 03-02-2020
0 2
0
2
jiaqya
i have a table as below. one two three four total five six i want the "total" column to be shown at the end always,...
by jiaqya Builder in Splunk Search 03-02-2020
0 3
0
3
SteveBowser
I have a customer that needs to have a dashboard showing a start date of Saturday and ending on the current workday. ...
by SteveBowser Explorer in Splunk Search 03-02-2020
0 3
0
3
tonakano
日本語(UTF-8)と数字や日付情報が入り混じった情報を読み込んでいます。 読み込みのChar-setは、AUTOを指定にしています。 読み込んだ結果を見ると問題なく、日本語が見えるのですが、何らかの検索をすると途端に表示が別の文字...
by tonakano Engager in Splunk Search 03-02-2020
0 3
0
3
hollybross1219
Splunk n00b here with a question. I have a query I would like to display on a bar graph dashboard visual. Here is th...
by hollybross1219 Path Finder in Splunk Search 03-02-2020
0 3
0
3
mrhodes93
Hi all, I've been struggling with a good query for this for a few days. Basically I'm trying to track users that dro...
by mrhodes93 Explorer in Splunk Search 03-02-2020
0 4
0
4
daniel333
All, We're reselecting our endpoint protection for Windows Servers and Workstation. I'd like to start with solution...
by daniel333 Builder in Splunk Search 03-02-2020
0 1
0
1
vikram1583
how might i incorporate regex into a like eval element in a search like this. This syntax does not work | eval prod...
by vikram1583 Explorer in Splunk Search 03-02-2020
0 2
0
2
sachindarade
Hi All, I am new to Splunk.. Here is my requirement.. I have pass log directory to forwarder. Now i want to read the...
by sachindarade New Member in Splunk Search 03-02-2020
0 3
0
3
emasiello
I need an alert that notifies me when the SAME Account_Name logs into 2 specific hosts within the same 30 minute wind...
by emasiello New Member in Splunk Search 03-02-2020
0 5
0
5
alan20854
In one of the columns of my lookup table, host, some values have two hosts rather than just one. For example, my tab...
by alan20854 Path Finder in Splunk Search 03-02-2020
0 10
0
10
knitz
hello, looking for some help. I am running a search, daily.... but the logs in the source get updated late by the a...
by knitz Explorer in Splunk Search 03-02-2020
0 1
0
1
harry2007gsp
how can i use a search(ex:abc) as savedsearch when search abc contains sql query inside it?
by harry2007gsp Path Finder in Splunk Search 03-02-2020
1 7
1
7
Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...