Splunk Search

Splunk Search
Community Activity
heskez
Hi there,I am trying to get some data from MS Defender into a Splunk query. My original KQL query in azure contains |...
by heskez Engager in Splunk Search 06-12-2024
0 1
0
1
power12
I have a search that outputs the hostlist by test.index=abc | stats count by host test | stats count as total_count v...
by power12 Communicator in Splunk Search 06-11-2024
0 3
0
3
SureshkumarD
Hi Team,I need to extract the string which is between the two different special characters using regex. Could you ple...
by SureshkumarD Explorer in Splunk Search 06-11-2024
0 2
0
2
HattrickNZ
This is my sample search/data: | makeresults | eval data = " 1 2017-12-01 00:00:00 A 0 131...
by HattrickNZ Motivator in Splunk Search 06-11-2024
0 6
0
6
andgarciaa
Hello,I am using Splunk Cloud, for some our sourcetypes we have defined specific TRUNCATE values. I have a couple of ...
by andgarciaa Explorer in Splunk Search 06-11-2024
0 1
0
1
Rajaion
Hello community,I'm having a problem with a probably stupid addition but I can't find a solution. I make a simple que...
by Rajaion Path Finder in Splunk Search 06-11-2024
0 2
0
2
Siddharthnegi
can I find all the saved searches which are using index=* rather than giving specific name. And all the saved searche...
by Siddharthnegi Contributor in Splunk Search 06-11-2024
0 2
0
2
kasimanikandan
Hi Team,I have stats group by fields as token it will change dynamically based on time selection. for example if sele...
by kasimanikandan Engager in Splunk Search 06-11-2024
0 3
0
3
anandhalagaras1
Need to pull the License Usage in GB for the top 100 Host along with their respective Index Source and Souretype info...
by anandhalagaras1 Contributor in Splunk Search 06-11-2024
0 6
0
6
LearningGuy
How do I trace if a server in a network path behind a firewall?The data is presented in the table below.For example: ...
by LearningGuy Motivator in Splunk Search 06-10-2024
0 1
0
1
syk19567
Hi community, I need to write a query which can adjust its search string based on event time. For example, if the eve...
by syk19567 Explorer in Splunk Search 06-10-2024
0 2
0
2
paragg
I've made a dashboard to show some statistics on it. The information that appears on my dashboard differs from that o...
by paragg Loves-to-Learn Lots in Splunk Search 06-10-2024
0 1
0
1
karthikmalla
I am on Splunk 7.0.2 and trying to join two search strings with a common field but for reason this is not working. i...
by karthikmalla Explorer in Splunk Search 06-10-2024
0 6
0
6
zcianflone
I'm programmatically generating saved searches with the Python SDK, which is great. I then want to embed those saved...
by zcianflone Engager in Splunk Search 06-10-2024
0 1
0
1
jpillai
Hi All,I have a report running every 6 hour with below search query. This is fetching hourly availability of haproxy ...
by jpillai Path Finder in Splunk Search 06-10-2024
0 9
0
9
anandhalagaras1
Hi Team, We have deployed Splunk Cloud in our environment and currently have a requirement to generate monthly report...
by anandhalagaras1 Contributor in Splunk Search 06-09-2024
0 0
0
0
anandhalagaras1
Hi Team,There is a requirement  to get the license usage split in GB on daily basis for the top 20 log sources along ...
by anandhalagaras1 Contributor in Splunk Search 06-09-2024
0 4
0
4
Tzur
this is part of one tablehostname |  monitor | ip |  other fields...aaa |v | ....aaa |x | ...bbb | v | ...how can cha...
by Tzur New Member in Splunk Search 06-09-2024
0 1
0
1
shimada-k
Hi Experts,I would like to create the following table from the three events.  ipv4-entry_prefix network-ins...
by shimada-k Explorer in Splunk Search 06-09-2024
0 8
0
8
shimada-k
Hi all,I want to find the difference between two values (values.in65To127OctetFrames).My data is like below.{"name":"...
by shimada-k Explorer in Splunk Search 06-08-2024
0 2
0
2
HPACHPANDE
Below is the query which included all the events for windows shutdown and starting up want to exclude host when event...
by HPACHPANDE Explorer in Splunk Search 06-07-2024
0 4
0
4
Théophane_GUE
Hello,I've recently tested a sourcetype for a new input via the props.conf file on my standalone dev environment, and...
by Théophane_GUE Loves-to-Learn Lots in Splunk Search 06-07-2024
0 2
0
2
bryanttfelician
Is there a way to display current time with time marker in this dashboard in splunk?
by bryanttfelician Engager in Splunk Search 06-07-2024
0 3
0
3
shashankk
Hi Team,Need your assistance for the configuration changes in Splunk. The requirement is to change the Timezone based...
by shashankk Communicator in Splunk Search 06-07-2024
0 2
0
2
marco_massari11
Hello,I need to monitor some critical devices (stored in a lookup file) connected to the Crowdstrike console, in part...
by marco_massari11 Communicator in Splunk Search 06-07-2024
0 1
0
1
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...