Splunk Search

Splunk Search
Community Activity
ruhtraeel
Hello, I would like to create fields (or a field with multiple values) which represents the sum for each timestamp. ...
by ruhtraeel Path Finder in Splunk Search 10-28-2019
0 7
0
7
jbrocks
Hi everybody, I am extracting nested JSON with KV_MODE = JSON, which seems to work correctly. My problem is, I am ge...
by jbrocks Communicator in Splunk Search 10-28-2019
0 2
0
2
erlindemberg
ERROR SearchParser - The search specifies a macro 'bcoat_request' that cannot be found. Reasons include: the macro na...
by erlindemberg Explorer in Splunk Search 10-28-2019
0 2
0
2
w564432
I am running a map command off of an initial search. The map ends with a sendemail command which sends a table of res...
by w564432 Explorer in Splunk Search 10-28-2019
0 1
0
1
rafamss
Hi, I'm using a Single Instance of Splunk 6.6.2 and I've tried filtering some events of my log using the code below,...
by rafamss Contributor in Splunk Search 10-28-2019
0 18
0
18
jeffoptimizely
What's a good Unix-y way to check whether splunkd and splunkweb are running? (I know the bin/splunk command does thi...
by jeffoptimizely Explorer in Splunk Search 10-28-2019
3 9
3
9
kavyamohan
JobExecutionTime 2652.180000 3462.840000 823.780000 I have a field named JobExecutionTime and i have it as a list o...
by kavyamohan Explorer in Splunk Search 10-28-2019
0 1
0
1
peter_pergament
I have logged in and "installed" the Rest APi App I cant seem to find where to go to use it?
by peter_pergament New Member in Splunk Search 10-28-2019
0 8
0
8
jamesofthedead8
Trying to calculate out a "TransactionTime" time by pairing two events by one matching field (ECID) and then working ...
by jamesofthedead8 Explorer in Splunk Search 10-28-2019
0 4
0
4
jwalzerpitt
I have the following search looking for > three login attempts with > 0 successes and two or > failures by user, src,...
by jwalzerpitt Influencer in Splunk Search 10-28-2019
0 6
0
6
gopenshaw
Hi, I'm having an issue with a splunk lookup and I can't work out what the issue is. I have a lookup file, that amon...
by gopenshaw Explorer in Splunk Search 10-28-2019
0 1
0
1
evelenke
Hi Splunkers, when I set 2 conditions for the same field to where stanza - I get 0 results. Example: | tstats summa...
by evelenke Contributor in Splunk Search 10-28-2019
1 6
1
6
loza176
I'm having trouble writing a query in splunk to notify me when a user has been added to one or more groups in a speci...
by loza176 New Member in Splunk Search 10-27-2019
0 4
0
4
thomaszheng
Please help, I'm stuck on this problem for a while. Basically, lets say I have different events with fields like this...
by thomaszheng New Member in Splunk Search 10-26-2019
0 1
0
1
jgillman
I have been trying to sort this and I can not seem to be able to get it. index=uberagent* sourcetype=uberAgent:Syst...
by jgillman Explorer in Splunk Search 10-26-2019
0 5
0
5
pavanae
The following are my transforms.conf and props.conf in my cluster master transforms.conf [send_to_heavyforwarder]...
by pavanae Builder in Splunk Search 10-26-2019
0 3
0
3
shashwatsandeep
We have newly setup the Splunk Environment in AWS platform where we have used LDAP authentication method and created ...
by shashwatsandeep New Member in Splunk Search 10-25-2019
0 1
0
1
Deepz2612
I want to extract the Autosys_Job from the below log snippet and so used the below rex. Log Snippet : Query : rex ...
by Deepz2612 Explorer in Splunk Search 10-25-2019
0 2
0
2
HeinzWaescher
Hi, I would like to know whether it is possible to perform something like this per default for each and every search...
by HeinzWaescher Motivator in Splunk Search 10-25-2019
0 4
0
4
lsy9891
I displayed the percentage values by enabling this: <option name="charting.chart.showPercent">1</option> And I t...
by lsy9891 Engager in Splunk Search 10-25-2019
0 1
0
1
aohls
I want to get a 7 day and 30 day average in a single search. sourcetype="businessService" OR sourcetype="bpmservice-...
by aohls Contributor in Splunk Search 10-25-2019
0 3
0
3
jsmithn
I am trying to create a search that evaluates today's date and uses that output string/field as part of the search: ...
by jsmithn Path Finder in Splunk Search 10-25-2019
0 7
0
7
mtrochym
I am banging my head trying to understand the map command and how it works. I have one search that returns values:...
by mtrochym Observer in Splunk Search 10-25-2019
0 4
0
4
romainbouajila
Hello, I'm having a little trouble solving this one. I managed to extract all hosts in Splunk in a table with events...
by romainbouajila Path Finder in Splunk Search 10-25-2019
0 9
0
9
eddy_liao
Hi I have a very wierd requirement to transform the result of my search **EMPLOYEE, BOSS** ERIC, CHRIS CHRIS, MACK ...
by eddy_liao Engager in Splunk Search 10-25-2019
1 3
1
3
Get Updates on the Splunk Community!

Kick the Tires Before You Commit: A Hands-On Tour of the Splunk Observability Cloud ...

Evaluating an enterprise observability platform usually goes like this: fill out a form, get a free trial with ...

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...
Top Solution Authors