Splunk Search

Splunk Search
Community Activity
rajaguru2790
Please help me with the script below. This script is not running in Unix and Windows machine. Please help tweak and ...
by rajaguru2790 Explorer in Splunk Search 11-03-2019
1 2
1
2
bsaujla131984
I have created a splunk alert which runs after every one hour to check for certain pattern in last one hour. Most of ...
by bsaujla131984 Path Finder in Splunk Search 11-02-2019
0 1
0
1
whitehaven
Specifically at this stage of the tutorial "https://docs.splunk.com/Documentation/SplunkCloud/8.0.0/SearchTutorial/Ab...
by whitehaven Explorer in Splunk Search 11-02-2019
1 1
1
1
igschloessl
index=proxy earliest=-1month@month latest=@month|fields host month | eval month=strftime(_time, "%m") | stats count b...
by igschloessl Explorer in Splunk Search 11-02-2019
0 7
0
7
jip31
Hi, With the search below, I would like to be able to display in my table the host which have also "No SPLUNK Agent"...
by jip31 Motivator in Splunk Search 11-02-2019
0 9
0
9
staze
All, I had Splunk Light installed (version 6.4.0). Tried to log in, but noticed that the license had expired, so I s...
by staze Path Finder in Splunk Search 11-02-2019
0 5
0
5
aishwaryabh
I am trying to run a transaction command for all the patrons where startswith=(Action=CardIn) endswith=(Action=CardOu...
by aishwaryabh New Member in Splunk Search 11-02-2019
0 3
0
3
asearson
BACKGROUND: My Disaster Recovery team is compiling a list of all IPs endpoints, and has requested that I query all of...
by asearson Explorer in Splunk Search 11-01-2019
0 4
0
4
rithick
index=something | rex field=_raw ".*\&WST=(?P<MMMId>[^&]+).*" | search Googly | dedup MMMId | bucket_...
by rithick New Member in Splunk Search 11-01-2019
0 2
0
2
alkhaldi
Hi I created a chart panel in a dashboard. The panel is based on an sql query. Everytime i click on the chart it sel...
by alkhaldi Engager in Splunk Search 11-01-2019
0 4
0
4
iamsplunker31
Hello All, I have an existing lookup file newlookupfile.csv. I'm trying to update the lookupfile with new row. I di...
by iamsplunker31 Path Finder in Splunk Search 11-01-2019
0 6
0
6
rashi83
Need to extract Insurer , User , Dealer name 2019-11-01 06:54:20 W3SVC4 AUSYD11AS90 172.29.5.28 GET /Areas/Framewor...
by rashi83 Path Finder in Splunk Search 11-01-2019
0 7
0
7
abhishekbhasin
Trying to setup up an alert with multiple fields extracted through Field. For example A,B, C etc and each having a d...
by abhishekbhasin Explorer in Splunk Search 11-01-2019
1 12
1
12
bapun18
Hi I want to improve my search for better search performance, please find the attachment enclosed.![alt text
by bapun18 Communicator in Splunk Search 11-01-2019
0 8
0
8
mozukun3
お世話になります。 サーチ文の書き方についてご教示ください。 まず、以下の検索結果を出しています。 ・サーチ文 「soucetype="test1" | table host, user, state」 ・サーチ結果 ------...
by mozukun3 New Member in Splunk Search 11-01-2019
0 5
0
5
ktn01
Hello, I have events in the following format: 20/08/19 16:34:17 login1 command RunAsUsers="web,tomcat,embed" wit...
by ktn01 Path Finder in Splunk Search 11-01-2019
0 2
0
2
Robbie1194
Hi guys, I was wondering if anyone knew of a method of appending data to a lookup, but not overwriting anything in ...
by Robbie1194 Communicator in Splunk Search 11-01-2019
0 2
0
2
bsaujla131984
I have created an alert which basically checks the occurrence in particular keyword in two log files , however there ...
by bsaujla131984 Path Finder in Splunk Search 11-01-2019
0 1
0
1
ahuseid
I need to join two searches on a common field in which I want a value of the left search matches all the values of t...
by ahuseid New Member in Splunk Search 11-01-2019
0 6
0
6
ajtalbot1
Simple search to look at the battery status on my UPS: UPS_BATT | timechart max(UPS_BATT) span=1m But the UPS_BATT...
by ajtalbot1 Engager in Splunk Search 11-01-2019
0 4
0
4
akki2428
Hi, I would want to search for all results for this specific string pattern 'record has not been created for id XXXXX...
by akki2428 New Member in Splunk Search 11-01-2019
0 9
0
9
daniel_splunk
Have a search with many subsearch and append command like below pattern. | makeresults | eval abcd="acded" | appe...
by daniel_splunk Splunk Employee Splunk Employee in Splunk Search 11-01-2019
0 1
0
1
mansel_scheffel
Hi, Is there any benefit to using the old method when using summary indexing? Basically I would like to the know dif...
by mansel_scheffel Explorer in Splunk Search 11-01-2019
0 6
0
6
kdulhan
Hi All, I have some search criteria followed by stats as: Search ns=app1 Error | stats sum(eval(AcctNo="'1000394'")...
by kdulhan Explorer in Splunk Search 10-31-2019
1 8
1
8
rashi83
I need to display a table with 4 columns and date is like this: Colum A Col B Col C Col D x ...
by rashi83 Path Finder in Splunk Search 10-31-2019
0 2
0
2
Get Updates on the Splunk Community!

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...