Splunk Search

Splunk Search
Community Activity
jip31
hi i would be able to add an icon in my nav menu which allows to open a link when i click on the icon is it possible ...
by jip31 Motivator in Splunk Search 02-07-2020
0 2
0
2
erlindemberg
Hello, I would like to request help. All searches that I do in my indexer, whether through search reporting or some ...
by erlindemberg Explorer in Splunk Search 02-07-2020
0 3
0
3
avni26
Hi, I need to Optimize my query to improve the dashboard performance without using any type of join function. Belo...
by avni26 Explorer in Splunk Search 02-07-2020
0 4
0
4
jip31
link texthi I use the search below which works fine as you can see i count hte number of hosts corresponding to a pr...
by jip31 Motivator in Splunk Search 02-07-2020
0 3
0
3
jip31
Hi Im a report, I am doing a basic count on a field | stats values(CycleCount00) as "Cycle count" by host when "C...
by jip31 Motivator in Splunk Search 02-06-2020
0 4
0
4
andrewhnguyen
Is there a way I can group a window of 3 time points and add it as a field with the last two remaining being ignored?...
by andrewhnguyen New Member in Splunk Search 02-06-2020
0 1
0
1
kanj
Hello there, Step1: user software_name dc_today dc_past A XYZ.exe 1 9 B ...
by kanj New Member in Splunk Search 02-06-2020
0 1
0
1
RyanDonnelly22
I have a monitoring search, that we are viewing both as a graph and when drilling in, as the events. When viewing the...
by RyanDonnelly22 Explorer in Splunk Search 02-06-2020
0 1
0
1
rfranco83
Hi All, I am trying to use the fillnull to populate empty values within the same field with unique values. For examp...
by rfranco83 New Member in Splunk Search 02-06-2020
0 4
0
4
Prakash493
My DB connect app is hosted on the Splunk Heavy forwarder and i need to create a connection to SQL server. I got the ...
by Prakash493 Communicator in Splunk Search 02-06-2020
0 1
0
1
luck123813
Hey everyone, I have an issue where I am ingesting data via REST API, though I am getting a lot of duplicate data i...
by luck123813 Explorer in Splunk Search 02-06-2020
0 2
0
2
vpantangi
I am getting these errors in my internal logs: ERROR SearchOperator:kv - Cannot compile RE \"(?:\s*'[^']*'|\s*"[^"]*...
by vpantangi Path Finder in Splunk Search 02-06-2020
0 1
0
1
btawiah
Please any help will be appreciated. We have a lookup test_pci_asset.csv with a field nt_host values of nt_host are ...
by btawiah Explorer in Splunk Search 02-06-2020
0 0
0
0
marycordova
Assume you have a lookup table and you want to load the lookup table and then search the lookup table for a value or ...
by SplunkTrust SplunkTrust in Splunk Search 02-06-2020
0 2
0
2
khandelwaly
I am not getting any results back using dedup search query: index=prdidx sourcetype="OUTPUT" source="http-access.l...
by khandelwaly Explorer in Splunk Search 02-06-2020
0 19
0
19
ricotries
I am currently monitoring a file that generates logs, but assigns the time in epoch format. Is there a way to transfo...
by ricotries Communicator in Splunk Search 02-06-2020
0 5
0
5
ips_mandar
Hi, Dedup command gives recent unique values based on fields mention. I want to know these recent values are identifi...
by ips_mandar Builder in Splunk Search 02-06-2020
0 2
0
2
thomaap
below average function is not giving me the correct value for last 30 days.Kindly advise | eval sTime=strptime(start...
by thomaap New Member in Splunk Search 02-06-2020
0 5
0
5
gtonti
My log file is: TimeStamp=20180521095103123 Service=ABC12 User=ut1234 Id=12345678 Msg=tttttttttttttTimeStamp=2018052...
by gtonti Explorer in Splunk Search 02-06-2020
1 5
1
5
margie68
Hi, I have an index with events such as: CITY , TICKET, CREATION_DATE, OTHER METADATA FIELDS Pa...
by margie68 New Member in Splunk Search 02-06-2020
0 1
0
1
jiaqya
i have a dynamic column which is bascially today's date, but the column name is 05-02-2020 for example. i would like ...
by jiaqya Builder in Splunk Search 02-06-2020
1 6
1
6
rsaude
Hey everyone, Im trying to come up with a way to get a table stating that, a user was created in splunk had the "Re...
by rsaude Path Finder in Splunk Search 02-06-2020
0 3
0
3
unitedmarsupial
We have a large number of hosts reporting to Splunk, and sometimes (rarely), some of them stop sending events. Is the...
by unitedmarsupial Path Finder in Splunk Search 02-05-2020
0 10
0
10
albasii
Many questions deal with indexed volume per source and per day for licence concern. My need is logs volume per source...
by albasii New Member in Splunk Search 02-05-2020
0 2
0
2
rczone
I have the log snippet below want to extract id and hostname into 2 different fields for example in the expected ou...
by rczone Path Finder in Splunk Search 02-05-2020
0 3
0
3
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

Data Management Digest – May 2026

Welcome to the May 2026 edition of Data Management Digest!   As your trusted partner in data innovation, the ...