Splunk Search

Splunk Search
Community Activity
egur
Hi, I'm trying to fill empty hours (without events) using makecontinuous. The time column created in the query/ | t...
by egur New Member in Splunk Search 12-19-2019
0 2
0
2
MichaelPriest
I'd like to extend the width of my drop down box in my dashboard because the source names are quite long and i'd like...
by MichaelPriest Communicator in Splunk Search 12-19-2019
2 9
2
9
bcarr12
Hi all, I am working with a log that can sometimes have the same field in one log entry more than one time, but with...
by bcarr12 Path Finder in Splunk Search 12-19-2019
0 5
0
5
rafadvega
I had the next events examples: 2019-09-16T13:27:10.169107+02:00 koopa.browser.local node= koopa.browser.local type...
by rafadvega Path Finder in Splunk Search 12-19-2019
1 3
1
3
bmorgenthaler
Okay I'm pulling my hair out here. I'm playing around with Windows Defender Events, trying to capture them and get th...
by bmorgenthaler Path Finder in Splunk Search 12-19-2019
0 4
0
4
drewg33
I am having trouble constructing a search command in an Eval statement. I stripped it down to its most basic form to ...
by drewg33 Engager in Splunk Search 12-19-2019
0 1
0
1
harshparikhxlrd
Hello, I'm having issues with some of my splunk dashboards having issues with loading. It was loading fine before, ...
by harshparikhxlrd Path Finder in Splunk Search 12-19-2019
1 7
1
7
yepyepyayyooo
Okay so this question has never been asked or answered before so here goes...Hoping someone can assist. index="ironp...
by yepyepyayyooo New Member in Splunk Search 12-19-2019
0 4
0
4
Sujithkumarkb
I want to extract the below values during index time 1. extract WDDZF4KB3JA469368 ,ABCDE4KB3JA469368 and so on and as...
by Sujithkumarkb Observer in Splunk Search 12-19-2019
0 5
0
5
moesaidi
I have 6 panels on a dashboard, but only allow 3 concurrent searches for the user role. Using Splunk Enterprise 6.2, ...
by moesaidi Path Finder in Splunk Search 12-19-2019
2 11
2
11
msrama5
Hi, I am trying to do search based on field cardid between 2 queries and 2 different time durations, following query ...
by msrama5 Explorer in Splunk Search 12-19-2019
0 1
0
1
michtek
Hi, I'm getting "Unknown search command 'dbquery'" error when trying to use | dbquery as non-admin user. I granted re...
by michtek Explorer in Splunk Search 12-18-2019
0 4
0
4
amorberg
What search string would I use to find out what computers do NOT have a specific software. I have the Splunk TA Wind...
by amorberg New Member in Splunk Search 12-18-2019
0 2
0
2
econstantin
I've got two different events that have identical data points, including an id. I'd like to join the events on an id...
by econstantin Engager in Splunk Search 12-18-2019
1 3
1
3
harshparikhxlrd
Hello, I'm trying to convert my time format for the Duration seen below to a format such as 1hr 2min 30 sec display.
by harshparikhxlrd Path Finder in Splunk Search 12-18-2019
0 4
0
4
clementros
Hi all, I want to extract fields form log events. I have two errors patterns : EDICPP 4-1-1-0 exception: Mandator...
by clementros Path Finder in Splunk Search 12-18-2019
0 5
0
5
karunanaik
Here is my search query index=nonprod CFE_AppName=abc CFE_Environment=dev Appointment has been booked | rex field=...
by karunanaik Engager in Splunk Search 12-18-2019
1 2
1
2
dibyaranjan3177
Hello, I am trying to create a query which will help me combine results from two search results by doing this: ind...
by dibyaranjan3177 New Member in Splunk Search 12-18-2019
0 2
0
2
ibob0304
I am trying to get the stats for the search keywords. My query will list the errors by time but it wont tell me how m...
by ibob0304 Communicator in Splunk Search 12-18-2019
1 2
1
2
sahil237888
Can anyone please help what could be the equivalent to SQL's "percent_Rank" command in splunk select host, count(*) ...
by sahil237888 Path Finder in Splunk Search 12-18-2019
0 3
0
3
cmittal
I have splunk enterprise setup on a separate machine and I have an application running on another instance. Now I am...
by cmittal New Member in Splunk Search 12-18-2019
0 1
0
1
clementros
Hi all, I want to extract fields form log events. I have two errors patterns : * Can not convert FOO from here ...
by clementros Path Finder in Splunk Search 12-18-2019
0 2
0
2
ChrisCLewis
I am looking to have a new field that will assign a reference to each, this reference will be sequential and will rep...
by ChrisCLewis Communicator in Splunk Search 12-18-2019
0 5
0
5
hrs2019
Hello all I want to display the field name(CNB) in the main result which has no result now but in future it ll. I ...
by hrs2019 Path Finder in Splunk Search 12-18-2019
0 8
0
8
mklhs
The relevant data about the future development of CustID are read in via a lookup (new_custID.csv) based on the table...
by mklhs Path Finder in Splunk Search 12-18-2019
0 3
0
3
Get Updates on the Splunk Community!

Application management with Targeted Application Install for Victoria Experience

  Experience a new era of flexibility in managing your Splunk Cloud Platform apps! With Targeted Application ...

Index This | What goes up and never comes down?

January 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Splunkers, Pack Your Bags: Why Cisco Live EMEA is Your Next Big Destination

The Power of Two: Splunk + Cisco at "Ludicrous Scale"   You know Splunk. You know Cisco. But have you seen ...
Top Solution Authors