Splunk Search

Splunk Search
Community Activity
brpsingara
Hello, I want to search more than one year data for particular machine. How to check is possible to get more than ...
by brpsingara Explorer in Splunk Search 10-22-2019
0 6
0
6
rmhughes
I occasionally use Splunk as part of my job to research issues, but am very much a novice. The query below charts the...
by rmhughes Explorer in Splunk Search 10-22-2019
0 4
0
4
tomlimbu
Newbie Here ! How can I get a word count in a url? I am trying to count the number of occurrence of a word "organizat...
by tomlimbu New Member in Splunk Search 10-22-2019
0 2
0
2
tristanmatthews
Hi, So I'm inheriting some splunk code that I'm going through and cleaning up. It contains: rex field=source "/data...
by tristanmatthews Path Finder in Splunk Search 10-22-2019
8 28
8
28
brpsingara
I want to search "August 2018 activity on machine DNS-DC-01" Could you please help me, how to use metadata for part...
by brpsingara Explorer in Splunk Search 10-22-2019
0 4
0
4
vikcee
In the below log, I need to extract genres from the log. In a single log there are multiple genres. Such as for the b...
by vikcee Path Finder in Splunk Search 10-22-2019
1 6
1
6
lsy9891
I wrote this base search query: host=NETWEBA* sourcetype="WinEventLog:Application" AND ApplicationSource="/jpw*" AND...
by lsy9891 Engager in Splunk Search 10-22-2019
0 1
0
1
tomgc
Hello Everyone, I construct a csv (output)lookup file containing the hourly average response time, the hourly number...
by tomgc Engager in Splunk Search 10-22-2019
1 2
1
2
lgrachek
below is what I have so far. What I need to do is match the src_user from event code 4724 and the time to events in 4...
by lgrachek Explorer in Splunk Search 10-22-2019
0 8
0
8
mikecal
I have an issue where my transaction search finds endswith events with no startswith events. Not to go into too much ...
by mikecal Explorer in Splunk Search 10-22-2019
0 3
0
3
cuongnguyen112
i have data like this : used_memory free_memory total_memory used_swap free_swap total_swap 665268 ...
by cuongnguyen112 Engager in Splunk Search 10-22-2019
0 5
0
5
jeremywebb
Sorry for not spelling the problem out in the title, I'm a bit stuck even for the correct language to describe my puz...
by jeremywebb Explorer in Splunk Search 10-22-2019
1 4
1
4
iqbalintouch
sourcetype=abc "responseStatus=500" "abc.xyz.logging.yyyy.zzzzz" "cccccccccccccc88888883333hhhh" | rex field=_raw "\...
by iqbalintouch Path Finder in Splunk Search 10-21-2019
0 2
0
2
kavyamohan
SVSCPLEX,S0W1,S0W1.DAL-EBIS.IHOST.COM,SYSLOG,zOS-SYSLOG-Console,SYSLOG,-0400,NE,001C,19283 01.21.46.880 -0500,S0W1 ...
by kavyamohan Explorer in Splunk Search 10-21-2019
0 4
0
4
venky1544
Hi all, I have the below dataset for a website. Time,title, response code 01/10/2019 08:22 ABC_PORTAL 200 01/10...
by venky1544 Builder in Splunk Search 10-21-2019
0 4
0
4
rahulbhatia
Hi All I have following table as outcome of my query :- Name lastname Emailid A D ab...
by rahulbhatia Path Finder in Splunk Search 10-21-2019
0 1
0
1
brent_weaver
Hello all... I have to compare two lookup table files in splunk. One is a list of hosts that should Be logging, and t...
by brent_weaver Builder in Splunk Search 10-21-2019
0 1
0
1
pyroman26
Here is my data in the table: Index Field1 Field2 1 0 A,B,C 1 -5 D,E,F 1 -10 G,H,I I have...
by pyroman26 New Member in Splunk Search 10-21-2019
0 1
0
1
kulwindersandhu
I am trying to make a search that will compare the fields value with the old fields value to determine if there is an...
by kulwindersandhu New Member in Splunk Search 10-21-2019
0 10
0
10
verbal_666
As in object, it's a strange behaviour, i can't use an IN clausole with host field in a map search. Here's my search...
by verbal_666 Builder in Splunk Search 10-21-2019
0 4
0
4
rbal_splunk
we recently upgrade our fairly large deployment of Splunk from version 7.2.6 to 7.3.2, and our users are unable to ...
by rbal_splunk Splunk Employee Splunk Employee in Splunk Search 10-21-2019
0 1
0
1
jmulcaster_splu
I'm new to Splunk. What are some basics I need to know about the features in the search user interface?
by jmulcaster_splu Splunk Employee Splunk Employee in Splunk Search 10-21-2019
0 3
0
3
rosh_dsa
How do I get a list of saved searches name, the user who ran it, the last time it ran and the query it ran, and who c...
by rosh_dsa New Member in Splunk Search 10-21-2019
0 3
0
3
jmulcaster_splu
We have some use cases that we'd like to develop into Splunk apps. How do we use Splunk Dev to develop our own apps a...
by jmulcaster_splu Splunk Employee Splunk Employee in Splunk Search 10-21-2019
0 2
0
2
electronicsplun
Hi I want to add a generating custom command that will query one of our DBs. So I have followed the tutorials and cr...
by electronicsplun New Member in Splunk Search 10-21-2019
0 2
0
2
Get Updates on the Splunk Community!

How to find the worst searches in your Splunk environment and how to fix them

Everyone knows Splunk is a powerful platform for running searches and doing data analytics. Your ...

Share Your Feedback: On Admin Config Service (ACS)!

Help Us Build a Better Admin Config Service Experience (ACS)   We Want Your Feedback on Admin Config Service ...

Build the Future of Agentic AI: Join the Splunk Agentic Ops Hackathon

AI is changing how teams investigate incidents, detect threats, automate workflows, and build intelligent ...