Splunk Search

Splunk Search
Community Activity
dyrm1
Hello everyone! My initial search give me events with the URLs that users clicked using the outlook client. After a...
by dyrm1 New Member in Splunk Search 12-02-2019
0 8
0
8
Puvi
Hi, i have a query which sorts the results, but when i change it to single value its not getting sorted can anyone h...
by Puvi New Member in Splunk Search 12-01-2019
0 4
0
4
everynameIwanti
Just want to ask why sometimes there is a dot in my time chart graph? and how to erase that? The dot looks like pictu...
by everynameIwanti Explorer in Splunk Search 12-01-2019
0 3
0
3
leandromatperei
Hi. I have a query that makes the difference of a query comparing today with last week. I would like to generate a g...
by leandromatperei Path Finder in Splunk Search 12-01-2019
0 9
0
9
rvalli
Here is my current query: index=abc* |stats count by user,date |eval highcount=(if count >=1000,1000,count) This g...
by rvalli Explorer in Splunk Search 12-01-2019
0 5
0
5
cald0002
I have two indexes that contain the same ip address but only one index contains hostnames for the ip addresses. How c...
by cald0002 New Member in Splunk Search 12-01-2019
0 1
0
1
indeed_2000
hi i have database schema, and want to extract a table like in picture. i try to use regular expression but it's not...
by indeed_2000 Motivator in Splunk Search 12-01-2019
0 17
0
17
leandromatperei
Hello, I have the splunk chart structure and would like to leave the 03 charts that are of numbers together within t...
by leandromatperei Path Finder in Splunk Search 12-01-2019
0 5
0
5
fgottilu
Hello Community, I am new in splunk. I want to make a report with all AD User logon with the details the source and ...
by fgottilu New Member in Splunk Search 11-30-2019
0 3
0
3
pkol
Hey gang, I have an external system which can call a dashboard URL - but it can only supply a single epoch time How ...
by pkol Explorer in Splunk Search 11-29-2019
1 1
1
1
ramsnazz
Is it possible to have a joined search with condition A in the first search OR condition B in the second search?
by ramsnazz New Member in Splunk Search 11-29-2019
0 4
0
4
niks987
Hi All, Hope you all are good. I was working on displaying the number of machines which are active for last one hou...
by niks987 Explorer in Splunk Search 11-29-2019
0 4
0
4
aalaa
Hello , I'm getting the following error in the Search head. How do I troubleshoot? Search process did not exit cle...
by aalaa Path Finder in Splunk Search 11-29-2019
0 6
0
6
riqbal47010
Referring below query: index=f5 | rex field=headers "Host: (?<host_url>[a-zA-Z0-9\-\.]+\.[a-zA-Z]{2,3})" | eval por...
by riqbal47010 Path Finder in Splunk Search 11-29-2019
0 2
0
2
dmenon84
Hi, I see the following error on one of my search heads since yesterday. Tried different things but haven't been ab...
by dmenon84 Path Finder in Splunk Search 11-29-2019
1 6
1
6
ansusabu
I have created a python script and it is taking an argument . I have declared it ,like this` hash = Option( ...
by ansusabu Communicator in Splunk Search 11-29-2019
0 0
0
0
rsaude
i want to verify if there is a difference in 2 counts made that relate to diferent timelines. This is what i've came...
by rsaude Path Finder in Splunk Search 11-29-2019
0 3
0
3
clementros
Hi all, I have extracted a field (exit_status) in log file. I want to know if a process exit properly. I have 3 us...
by clementros Path Finder in Splunk Search 11-29-2019
0 4
0
4
MBehm
I am trying to build a decent drilldown option and my current state is the following. I have a timechart with the nu...
by MBehm New Member in Splunk Search 11-29-2019
0 5
0
5
robertlynch2020
@MuS I would like to give access to some user to do refresh, i know they need admin role. However admin has 99 capa...
by robertlynch2020 Influencer in Splunk Search 11-28-2019
1 2
1
2
trojan_81
Within Splunk cloud 7.2.6 - If I run a search without specifying index or sourcetype it will search the main index b...
by trojan_81 Path Finder in Splunk Search 11-28-2019
0 4
0
4
HattrickNZ
I have the following bit of code that does a search. The results of that search populates a tickbox input. I wrote it...
by HattrickNZ Motivator in Splunk Search 11-28-2019
0 3
0
3
sarnagar
Hi, Im getting this error although I do not have any duplicate values. Below is the screenshot and my xml: <form> ...
by sarnagar Contributor in Splunk Search 11-28-2019
9 4
9
4
Svill321
Hi everyone, I'm trying to dynamically populate a dropdown menu with error codes. Obviously, I don't want duplicat...
by Svill321 Path Finder in Splunk Search 11-28-2019
1 6
1
6
tmtcollins
I have a list of article IDs and their corresponding article view counts for a given day. I want to see what percen...
by tmtcollins Explorer in Splunk Search 11-28-2019
0 3
0
3
Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...