Splunk Search

Splunk Search
Community Activity
allenhau
When searching and the auto suggestion is bringing up a matching term, is there a keystroke command to select that? ...
by allenhau Engager in Splunk Search 10-23-2019
0 1
0
1
tyhopping1
I am in need of combining these three searches into one search: 1. NameOfJob = BLT* | spath message | search...
by tyhopping1 Engager in Splunk Search 10-23-2019
0 1
0
1
UMDTERPS
I am looking through the documentation on Splunk about trendlines and sma | ema | wma. In the documentation, it says ...
by UMDTERPS Communicator in Splunk Search 10-23-2019
0 5
0
5
gravi
There few columns in the table that has multiple values in single line. I need them to be in separate/ newlines. Cu...
by gravi Explorer in Splunk Search 10-23-2019
0 2
0
2
danielbb
We would like to change the default search period to an hour. How can we do it in 7.3?
by danielbb Motivator in Splunk Search 10-23-2019
1 2
1
2
keithweller
My core switch had several spanning errors this morning, but Splunk did not record them. They are in the switch logs ...
by keithweller New Member in Splunk Search 10-23-2019
0 2
0
2
cbhattad
My query is something like below index = "A" | table x | stats dc(x) as total | appendcols [search index = "B" earl...
by cbhattad Path Finder in Splunk Search 10-23-2019
0 14
0
14
cfoord
Hi Everyone, I hope the smarter folks over here can assist me with a query that has kept me up for days. Hopefully t...
by cfoord New Member in Splunk Search 10-23-2019
0 1
0
1
tonakano
ご教授ください。 1つのレコードのパラメータで連続したデータA[],B[],C[]があります。 これらのデータの中身の個数は同数であり、順番も連携しています。 それぞれを取り出して意味のあるデータData(A[1],B[1],C[1...
by tonakano Engager in Splunk Search 10-23-2019
0 6
0
6
buzek
Hi I need to rename a field name (from lookup csv) with special character inside, like: Service* Status+ the probl...
by buzek Explorer in Splunk Search 10-23-2019
0 8
0
8
ialahdal
I have a lookup table that contains the data similar to the: Service_name, IP, Port HTTPS, 10.10.10.10, 443 DNS, 10.1...
by ialahdal Path Finder in Splunk Search 10-23-2019
0 3
0
3
asubramanian
I am seeing an odd behavior where my search event count is different when the exact query is run separately vs when u...
by asubramanian Explorer in Splunk Search 10-23-2019
0 1
0
1
sssignals
Hi Splunkers, I referenced Splunk documentation on finding outliers below. Why is there a need for moving a windo...
by sssignals Path Finder in Splunk Search 10-23-2019
0 1
0
1
willadams
I have a query that I am running using dbxquery for specific reasons. Anyway I have run into an interesting issue th...
by willadams Contributor in Splunk Search 10-22-2019
0 2
0
2
brpsingara
Hello, I want to search more than one year data for particular machine. How to check is possible to get more than ...
by brpsingara Explorer in Splunk Search 10-22-2019
0 6
0
6
rmhughes
I occasionally use Splunk as part of my job to research issues, but am very much a novice. The query below charts the...
by rmhughes Explorer in Splunk Search 10-22-2019
0 4
0
4
tomlimbu
Newbie Here ! How can I get a word count in a url? I am trying to count the number of occurrence of a word "organizat...
by tomlimbu New Member in Splunk Search 10-22-2019
0 2
0
2
tristanmatthews
Hi, So I'm inheriting some splunk code that I'm going through and cleaning up. It contains: rex field=source "/data...
by tristanmatthews Path Finder in Splunk Search 10-22-2019
8 28
8
28
brpsingara
I want to search "August 2018 activity on machine DNS-DC-01" Could you please help me, how to use metadata for part...
by brpsingara Explorer in Splunk Search 10-22-2019
0 4
0
4
vikcee
In the below log, I need to extract genres from the log. In a single log there are multiple genres. Such as for the b...
by vikcee Path Finder in Splunk Search 10-22-2019
1 6
1
6
lsy9891
I wrote this base search query: host=NETWEBA* sourcetype="WinEventLog:Application" AND ApplicationSource="/jpw*" AND...
by lsy9891 Engager in Splunk Search 10-22-2019
0 1
0
1
tomgc
Hello Everyone, I construct a csv (output)lookup file containing the hourly average response time, the hourly number...
by tomgc Engager in Splunk Search 10-22-2019
1 2
1
2
lgrachek
below is what I have so far. What I need to do is match the src_user from event code 4724 and the time to events in 4...
by lgrachek Explorer in Splunk Search 10-22-2019
0 8
0
8
mikecal
I have an issue where my transaction search finds endswith events with no startswith events. Not to go into too much ...
by mikecal Explorer in Splunk Search 10-22-2019
0 3
0
3
cuongnguyen112
i have data like this : used_memory free_memory total_memory used_swap free_swap total_swap 665268 ...
by cuongnguyen112 Engager in Splunk Search 10-22-2019
0 5
0
5
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...