Splunk Search

Splunk Search
Community Activity
mitag
(Apologies in advance since I am not even sure what question to ask and how to ask it. I'll rewrite it once I get a b...
by mitag Contributor in Splunk Search 02-21-2020
0 4
0
4
1200125
The below is the text we are capturing Filename= &Filename=C%3A%5CUsers%5Cjbaile16%5CAppData%5CRoaming%5CDocumentum%5...
by 1200125 Engager in Splunk Search 02-21-2020
0 3
0
3
ihaveasplunkacc
| table Account "Estimated Gain_Loss" | addcoltotals labelfield="Account" label="Totals" | sort -"Estimated Gain_Los...
by ihaveasplunkacc Loves-to-Learn Lots in Splunk Search 02-21-2020
0 3
0
3
ignacm01
Hi All, I can't put an eval before my search syntax so I am trying to use an eval-Macro called "FriendlyEval" However...
by ignacm01 New Member in Splunk Search 02-21-2020
0 2
0
2
mattfunk20
Following a super helpful thread here https://answers.splunk.com/answers/129424/how-to-compare-fields-over-multiple-s...
by mattfunk20 Explorer in Splunk Search 02-21-2020
0 2
0
2
jip31
hi With the xml below, i display a complex bar chart that you can see in the screenshot I would like to modify 3 thin...
by jip31 Motivator in Splunk Search 02-21-2020
0 7
0
7
swengroeneveld
Good morning, Hope someone can help me out here. I am trying to get a list of IPs where hits are > 100, but I want t...
by swengroeneveld Explorer in Splunk Search 02-21-2020
0 4
0
4
jameldebbiche
Hi everyone, We have logs that contain field named "var" with num data type, the value of this field changes throug...
by jameldebbiche Engager in Splunk Search 02-21-2020
0 6
0
6
cresposh
The subject states the question.... is there a limit on how many sub search I can use within a single query. While d...
by cresposh Explorer in Splunk Search 02-21-2020
0 1
0
1
rgjnnc
Hi , I have logs like this a) 04:55:21.8630 Info {"message":"16 A Process completed, notification displayed" b)04:...
by rgjnnc New Member in Splunk Search 02-21-2020
0 5
0
5
123michi19
Hi @all, I'm a little bit helpless at the beginning of SPLUNK. I tried to do simple queries like: Request statusc...
by 123michi19 Explorer in Splunk Search 02-20-2020
0 3
0
3
muto123
バージョン7.1.4のSplunkでタイムピッカーで日付範囲を指定した場合以下の図のように、yyyy/mm/dd 00:00:00となりますが、 yyyy/mm/dd 24:00:00で選択することは可能でしょうか。 バージョン...
by muto123 New Member in Splunk Search 02-20-2020
0 0
0
0
daniel333
All, I am creating an app and was hoping to set the default to dark mode, is there a simple XML or conf file I shou...
by daniel333 Builder in Splunk Search 02-20-2020
0 0
0
0
mufthmu
Hi fellow Splunk users, I need help to set up search query (later will be saved as an alert) to check failed login a...
by mufthmu Path Finder in Splunk Search 02-20-2020
0 2
0
2
mklhs
Hello, I would like to leave the "header.JMSDestination"="topic/testTopic/Durable-Non-Subscription/20" the la...
by mklhs Path Finder in Splunk Search 02-20-2020
0 2
0
2
neluvasilica
I have a dynamic set of result data which I'd like to extract when the beginning of a line is the same across multipl...
by neluvasilica Explorer in Splunk Search 02-20-2020
0 13
0
13
harshavmb
Hello All, I'm trying to get the duration from the transaction. The problem here is I've duplicate start events and ...
by harshavmb New Member in Splunk Search 02-20-2020
0 7
0
7
livesplunkcomsk
I have several lookup tables containing various data types filenames hashes emails usernames etc (lookup tables are s...
by livesplunkcomsk Engager in Splunk Search 02-20-2020
0 9
0
9
rleoneti
I try to use flush on custom command and not working. I used generatetext.py from searchcommands_app and put self.fl...
by rleoneti New Member in Splunk Search 02-20-2020
0 0
0
0
pavanae
I have a transforms as follows which defines a lookup [ABC] filename = ABC.csv case_sensitive_match = false Now, ...
by pavanae Builder in Splunk Search 02-20-2020
0 5
0
5
poddraj
Hi, I am using below simple search where I am using coalesce to test. index=fios 110788439127166000 | eval check=c...
by poddraj Explorer in Splunk Search 02-20-2020
0 3
0
3
johnjarvis
Hi all, First, I do apologise if this is clearly answered in Answers or Documentation; I have spent some time in bot...
by johnjarvis Explorer in Splunk Search 02-20-2020
0 4
0
4
poddraj
Hi, Can someone help with regex expression to mask the below kind of pattern. I need this pattern of text to be maske...
by poddraj Explorer in Splunk Search 02-20-2020
0 1
0
1
landen99
What is the root cause of the message preventing saving a search: Error in 'SearchParser': The search specifies...
by landen99 Motivator in Splunk Search 02-20-2020
0 3
0
3
cyber_castle
I have indexed few sample logs in to the Splunk.. 2020-02-15T10:41:54.305Z servername.com sev="INFO" msg_details="...
by cyber_castle Path Finder in Splunk Search 02-20-2020
0 2
0
2
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...