Splunk Search

Splunk Search
Community Activity
jrs42
I have data with two fields that share a static range of 10 values.  I'd like to show a column chart with the buckets...
by jrs42 Path Finder in Splunk Search 06-13-2024
0 1
0
1
loganramirez
Splunk Enterprise 9.0.6 and building a summary index of sourcenumbers (count) and distinct destinations called (dc(de...
by loganramirez Path Finder in Splunk Search 06-13-2024
1 1
1
1
nkavouris
I would like to extract the results of each test within the logs array by distinct count of serial number.That is, fo...
by nkavouris Path Finder in Splunk Search 06-13-2024
0 3
0
3
antoniolamonica
Say I create a query that outputs (as a csv) the last 14 days of hosts and the dest_ports the host has communicated o...
by SplunkTrust SplunkTrust in Splunk Search 06-13-2024
0 3
0
3
jthomasc
Current query,  this shows the how many successful login attempts there have been.index=abc granttype=mobile| fields ...
by jthomasc Loves-to-Learn in Splunk Search 06-13-2024
0 2
0
2
Silah
HiI am getting a log feed for a transactional system. Each log entry has a status either End, Begin or something in b...
by Silah Path Finder in Splunk Search 06-13-2024
0 7
0
7
Raja_Selvaraj
  Hi all, Can you please help me with the Splunk query to list the Windows Process Names and CPU utilizations for the...
by Raja_Selvaraj Explorer in Splunk Search 06-13-2024
0 4
0
4
ganeshkumarmoha
Hi Team,For a business requirement, I need to validate log file generated for last an hour with combination of host a...
by ganeshkumarmoha Explorer in Splunk Search 06-13-2024
0 2
0
2
the_wolverine
I had some Splunk users who were deleted from UI Manager page. Is there some way to search for deleted Splunk users ...
by the_wolverine Champion in Splunk Search 06-13-2024
1 6
1
6
Jitendra33
Hi Team,   I am trying to put conversion of transaction for all days of the week in a line chart for successful trans...
by Jitendra33 Engager in Splunk Search 06-13-2024
0 1
0
1
cjohnk
Is it possible to action multiple operations in a single if condition, like what can be done in other languages?For e...
by cjohnk Explorer in Splunk Search 06-12-2024
0 3
0
3
MH1
Newbie here. Trying get the results from the index to match result int he inputlookup to only return result from the ...
by MH1 Engager in Splunk Search 06-12-2024
0 4
0
4
LearningGuy
If I used variable in the mvfilter match, i got the following errorError in 'EvalCommand': The arguments to the 'mvfi...
by LearningGuy Motivator in Splunk Search 06-12-2024
0 3
0
3
Splunk_sid
Hello All,I'm trying to remove leading zeros in IP addresses using rex and mode=sed . the regular expression I'm tryi...
by Splunk_sid Explorer in Splunk Search 06-12-2024
0 4
0
4
ClubMed
Hi,I have the following JSON object that is indexed via the default JSON extraction (INDEXED_EXTRACTIONS){ "asset...
by ClubMed Path Finder in Splunk Search 06-12-2024
0 5
0
5
harpr86
Hi,I am trying to get the error percentage of the https response request but its not working as expected. index="john...
by harpr86 Explorer in Splunk Search 06-12-2024
0 2
0
2
Mick_OBrien
Hi All, Hopefully someone can help with this.   We have logs that contain JSON where one of the fields can have multi...
by Mick_OBrien Path Finder in Splunk Search 06-12-2024
0 2
0
2
heskez
Hi there,I am trying to get some data from MS Defender into a Splunk query. My original KQL query in azure contains |...
by heskez Engager in Splunk Search 06-12-2024
0 1
0
1
power12
I have a search that outputs the hostlist by test.index=abc | stats count by host test | stats count as total_count v...
by power12 Communicator in Splunk Search 06-11-2024
0 3
0
3
SureshkumarD
Hi Team,I need to extract the string which is between the two different special characters using regex. Could you ple...
by SureshkumarD Explorer in Splunk Search 06-11-2024
0 2
0
2
HattrickNZ
This is my sample search/data: | makeresults | eval data = " 1 2017-12-01 00:00:00 A 0 131...
by HattrickNZ Motivator in Splunk Search 06-11-2024
0 6
0
6
andgarciaa
Hello,I am using Splunk Cloud, for some our sourcetypes we have defined specific TRUNCATE values. I have a couple of ...
by andgarciaa Explorer in Splunk Search 06-11-2024
0 1
0
1
Rajaion
Hello community,I'm having a problem with a probably stupid addition but I can't find a solution. I make a simple que...
by Rajaion Path Finder in Splunk Search 06-11-2024
0 2
0
2
Siddharthnegi
can I find all the saved searches which are using index=* rather than giving specific name. And all the saved searche...
by Siddharthnegi Contributor in Splunk Search 06-11-2024
0 2
0
2
kasimanikandan
Hi Team,I have stats group by fields as token it will change dynamically based on time selection. for example if sele...
by kasimanikandan Engager in Splunk Search 06-11-2024
0 3
0
3
Get Updates on the Splunk Community!

Free Professional Services for .conf26 Attendees

This year at .conf26, we are doing something a little different. We are bringing the best minds from ...

Defend at Machine Speed: Your Guide to Security Sessions at .conf26

Splunk .conf26   With threats moving at machine speed and attack surfaces expanding across hybrid ...

Where Innovation Takes Flight: The Splunk4Aviation Flight Sim Lands at .conf26

If you hear someone at .conf26 shouting "gear down, GEAR DOWN" across the show floor, you have found us.  The ...