Splunk Search

Splunk Search
Community Activity
gravi
Hi, I have nested json with Payload and the payload values are not consistent . First Format: { Activity: Logger...
by gravi Explorer in Splunk Search 12-06-2019
0 3
0
3
aswin_asok
i, One of my value in table is being passed as an Boolean expression as below (assignment_group = 1213App_Developmen...
by aswin_asok Explorer in Splunk Search 12-06-2019
0 0
0
0
user93
I want to search an exact phrase, but surronded by wildcards. I want to be able to do this with and without specifyin...
by user93 Communicator in Splunk Search 12-06-2019
0 2
0
2
rcastello
Hello, How can I compile a stats list of what servers a user account has logged into within a specific time period? ...
by rcastello Explorer in Splunk Search 12-05-2019
0 1
0
1
curlly88
I'm tasked with searching for all users that have been disabled in the last thirty days, these are employees no longe...
by curlly88 New Member in Splunk Search 12-05-2019
0 1
0
1
wu_weidong
I'm trying to check if the first occurrence of an event is today using the query below. However, I keep getting resul...
by wu_weidong Path Finder in Splunk Search 12-05-2019
0 1
0
1
cheriemilk
Hi Team, I have below events, want to find out the latest event for each kf7 value, and then stats count based on kt...
by cheriemilk Path Finder in Splunk Search 12-05-2019
0 1
0
1
danieldu
After I updated an app, why am I getting these search errors? The limit has been reached for log messages in info.cs...
by danieldu Engager in Splunk Search 12-05-2019
10 4
10
4
phoenixdigital
Hi All, I have a Search Head Cluster and I am trying to update a global lookup file in a particular app, but am havi...
by phoenixdigital Builder in Splunk Search 12-05-2019
2 4
2
4
prettysunshinez
Hi All, I require help in extracting the words that appear right before the word. Example: Null.set.error Nullerror S...
by prettysunshinez Explorer in Splunk Search 12-05-2019
0 8
0
8
mstark31
I have a situation where I want to run a main search of one index over a time period driven by the time picker on a d...
by mstark31 Path Finder in Splunk Search 12-05-2019
0 7
0
7
contactdipesh
I have got two different tables in my Splunk dashboard and both came from different searches. Is it possible to dow...
by contactdipesh New Member in Splunk Search 12-05-2019
0 2
0
2
chaga
Can anyone tell me which ports should listen on Splunk server and on the Target server (Client)? From where to where...
by chaga New Member in Splunk Search 12-05-2019
0 1
0
1
bmorgenthaler
I'm trying to do the following query index=main earliest=-60m latest="12/4/2019:12:31:41" So 60 minutes before a s...
by bmorgenthaler Path Finder in Splunk Search 12-05-2019
0 3
0
3
samtechy
Hi, I have a transaction ,begin and complete like below with session id. Want to generate an alert if the event not ...
by samtechy Engager in Splunk Search 12-05-2019
0 2
0
2
cheriemilk
Hi team, I got error 'Error in 'eval' command: The expression is malformed. ' when running below query. Guess it's b...
by cheriemilk Path Finder in Splunk Search 12-05-2019
0 3
0
3
Tylerdygert
I have some test JSON data that I am having trouble searching for. I need to create some Audit dashboards around thi...
by Tylerdygert Path Finder in Splunk Search 12-05-2019
0 16
0
16
tomasmoser
We ran into a problem where a search in smart mode returns 6 events, while the same search in fast mode returns 2 eve...
by tomasmoser Contributor in Splunk Search 12-05-2019
1 14
1
14
mbrownoutside
I'm building a dashboard where a user selects a dropdown item that has the value of a search macro name and then a si...
by mbrownoutside Path Finder in Splunk Search 12-05-2019
0 2
0
2
clementros
Hi all, I'm currently monitoring log files. I have exctrated 2 fields end_collection_timestamp & starting_collecti...
by clementros Path Finder in Splunk Search 12-05-2019
1 9
1
9
nahfam
The query below works, but i need to add a lookup value 'interval' to compare against the 'hours since last seen' val...
by nahfam Path Finder in Splunk Search 12-05-2019
0 10
0
10
dharveynswccd
I am writing a search which I intend to use to create an alert from. I keep getting "No Results" from this search unl...
by dharveynswccd Path Finder in Splunk Search 12-05-2019
1 11
1
11
nkumar6
I have a index, where i store values of items and their count (pulled from SQL DB). I run a search to return me items...
by nkumar6 Explorer in Splunk Search 12-05-2019
0 10
0
10
blueelvis
Hi, I have setup Splunk v8.0 in a separate VM and configured it to run strictly Python 3. Both my environments (Spl...
by blueelvis Engager in Splunk Search 12-05-2019
0 0
0
0
blaku
Hello I use automatic translation because I am not good at English. sorry. I took NVD 's CVE list (Json Feed) into S...
by blaku Explorer in Splunk Search 12-05-2019
0 5
0
5
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...