Splunk Search

Splunk Search
Community Activity
wti
Hello, I have a timechart search (search code snippet below), everything works great. The chart shows up and the le...
by wti Engager in Splunk Search 12-10-2019
0 1
0
1
rhugo
From the screenshot, i would like to achieve the below; LCU04 = 500 x 00000 LCU03 = 500 x 01985 LCU02 = 500 x 01985 ...
by rhugo Observer in Splunk Search 12-10-2019
0 3
0
3
clintla
I've tried various attempts at this with no joy. I'm simply trying to create a chart where I can specify w/ the time ...
by clintla Contributor in Splunk Search 12-10-2019
0 8
0
8
gravi
Hi I have Splunk messages that gives the information on course and student enrolled. My sample message as follows ...
by gravi Explorer in Splunk Search 12-10-2019
0 2
0
2
bullbo
Getting the following error on many of my previously working searches, any ideas on how to fix it? 3 errors occurre...
by bullbo Engager in Splunk Search 12-10-2019
0 1
0
1
govindparashar1
I have below data ` { [-] context: { [+] } level: INFO logger: x.x.x.xxx.service.xxxService msg: Fi...
by govindparashar1 New Member in Splunk Search 12-10-2019
0 2
0
2
indeed_2000
I have log file like this: 11:00:00 jon nginx: A[1234]B[56789] [0.1222] 11:00:00 dan service cloud: C[0078]D[12] F[...
by indeed_2000 Motivator in Splunk Search 12-10-2019
0 10
0
10
gravi
Hi, I have two datetime stamps, both in same format ( %m-%d-%Y %H:%M:%S %p UTC ) and i am trying to get the differ...
by gravi Explorer in Splunk Search 12-10-2019
0 8
0
8
benwebsternucle
I have encountered a strange issue when clicking on an "interesting field" in the left side bar under the events tab,...
by benwebsternucle Engager in Splunk Search 12-10-2019
1 1
1
1
umairahmad3985
I have written my own custom generating command in Splunk which connects to our API and fetches threat details of a d...
by umairahmad3985 Path Finder in Splunk Search 12-10-2019
0 0
0
0
badrinath_itrs
Hi All, Posting this question, as I am new to Geospatial lookup and trying to configure it as per Michael Porath's b...
by badrinath_itrs Communicator in Splunk Search 12-10-2019
1 2
1
2
damucka
Hello, My alert looks as follows: |inputcsv anomalies_ls5923.txt | where like(ANOMALY_ID, "iA%")| tail 1 |rename co...
by damucka Builder in Splunk Search 12-10-2019
0 1
0
1
feichinger
Hey - I'm taking my first steps on extracting fields with RegEx and can't seem to get this one working .. any help wo...
by feichinger Path Finder in Splunk Search 12-10-2019
0 5
0
5
gravi
I have a field that sends time in Min&sec in the format 3m7s I want it to be in the format 3.07 Tried using the bel...
by gravi Explorer in Splunk Search 12-10-2019
0 5
0
5
amirarsalan
Hi all! Need some help with a serach that showing which events has been searching for, last 90 days.
by amirarsalan Explorer in Splunk Search 12-10-2019
0 1
0
1
arunrajamani
Hello Experts, We had created splunk dashboard for monitoring automation tests which is triggered at Jenkins. Below ...
by arunrajamani New Member in Splunk Search 12-10-2019
0 7
0
7
amir_bnp
Hello everyone, I want to add a string in a list which is in a field compared to another string which also is in ano...
by amir_bnp Explorer in Splunk Search 12-10-2019
0 13
0
13
johann2017
I am trying to build an alert for when the total results for my search is greater than 9. I have it working, except t...
by johann2017 Explorer in Splunk Search 12-10-2019
0 6
0
6
Cuyose
lookup contains 3 columns DeviceId, host, and storeNumber splunk events contain a Properties.DeviceName field that m...
by Cuyose Builder in Splunk Search 12-09-2019
0 4
0
4
Melstrathdee
Hello, I'm having trouble extracting the following timestamp for one source, is there someone here that can recommend...
by Melstrathdee Path Finder in Splunk Search 12-09-2019
0 2
0
2
vnarapuram
If I have the log line: WEB 1.1.1.1/2.2.2.2/3.3.3.3 and I want to use extract fields to map: WEB -> field1 1.1.1.1/2...
by vnarapuram Explorer in Splunk Search 12-09-2019
0 8
0
8
nataliamur
Hello, I'd like to count events from Windows Logs in my search that include both EventCode="4624" as well as Account_...
by nataliamur New Member in Splunk Search 12-09-2019
0 2
0
2
adalbor
Hey All, Need some assistance with extracting/converting the epoch timestamps on index buckets from a search that I ...
by adalbor Builder in Splunk Search 12-09-2019
0 5
0
5
unitedmarsupial
We have an alert, that checks for a particular condition (Oracle-errors) across multiple indexes: (index=HOP OR inde...
by unitedmarsupial Path Finder in Splunk Search 12-09-2019
0 4
0
4
mogoe2
Hi, I want to create below search using splunk DataModel: index="oqa_pub" sourcetype="idesk_db_inc" |search RESOLVE...
by mogoe2 New Member in Splunk Search 12-09-2019
0 5
0
5
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Index This | Why did the turkey cross the road?

November 2025 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Feel the Splunk Love: Real Stories from Real Customers

Hello Splunk Community,    What’s the best part of hearing how our customers use Splunk? Easy: the positive ...