Splunk Search

Splunk Search
Community Activity
VijaySrrie
Hi Team,How to write a calculated field for below | eval action=case(like("request.path","auth/ldap/login/names"),"su...
by VijaySrrie Builder in Splunk Search 06-02-2024
0 1
0
1
Josh1890
Hello, I need help with the following scenario:Let's say I have a log source with browser traffic data, one of the av...
by Josh1890 Explorer in Splunk Search 06-02-2024
0 10
0
10
simuneer
I am in Vulnerability Management and a novice Splunk user.  I want to create a query to quickly determine whether we ...
by simuneer New Member in Splunk Search 06-01-2024
0 7
0
7
PleaseHelp
https://docs.splunk.com/Documentation/ES/7.3.1/Admin/ListcorrelationsearchesHi, I'm using the searches mentioned in t...
by PleaseHelp New Member in Splunk Search 05-31-2024
0 4
0
4
Naa_Win
I'm very new to metrics data in Splunk, I have a question regarding the what is plugin_instance and how can i get the...
by Naa_Win Path Finder in Splunk Search 05-31-2024
0 0
0
0
SureshkumarD
Hi Team,I have generated dynamic URLs using the lookup and add it in the field value of the table. Now I need to make...
by SureshkumarD Explorer in Splunk Search 05-31-2024
0 5
0
5
whitecat001
what command can i run if am not sure where an index for a data associated with a sourcetype is stored in splunk
by whitecat001 Explorer in Splunk Search 05-31-2024
0 5
0
5
sumarri
So, I have a loadjob with all the data I need with a primary field (account number). But, I have a CSV with about 104...
by sumarri Path Finder in Splunk Search 05-31-2024
0 8
0
8
whitecat001
Can i get a Splunk query that shows the last logon date for a group of active directory service account   Thanks 
by whitecat001 Explorer in Splunk Search 05-31-2024
0 6
0
6
YuriSpirin
Hello!I'm trying to resolve issues with splunkd being killed by OOM Reaper and it would be nice to know which saved s...
by YuriSpirin Explorer in Splunk Search 05-31-2024
0 2
0
2
spl10
I want to merge the cells in column S.No and share the output to the requestor.The only ask is Splunk should take all...
by spl10 Explorer in Splunk Search 05-31-2024
0 4
0
4
onthakur
index=abcd "API : access : * : process : Payload:" |rex "\[INFO \] \[.+\] \[(?<ID>.+)\] \:" |rex " access : (?<Event>...
by onthakur Explorer in Splunk Search 05-30-2024
0 4
0
4
Sriram
I am doing a search based on a pulldown values and displaying the results in a table. Here is the sample search stats...
by Sriram Communicator in Splunk Search 05-30-2024
2 3
2
3
Flobzh
HelloI'm using the transaction function to compute average duration and identify uncompleted transactions.Assuming on...
by Flobzh Explorer in Splunk Search 05-30-2024
0 2
0
2
eyeglassescase
Hi Splunk Community,   I need help to write a Splunk query to join two different indexes using any Splunk command tha...
by eyeglassescase Observer in Splunk Search 05-30-2024
0 1
0
1
gbam
Is there a way to run a search for all correlation searches and see their response actions?  I want to see what corre...
by gbam Explorer in Splunk Search 05-30-2024
0 2
0
2
vstan
Hi,  I was wondering how to correlate data using different sources.  For example:  Source A contains: User ID = 123 S...
by vstan Explorer in Splunk Search 05-29-2024
0 8
0
8
goton1160
Hi.  I've been a very basic user of Splunk for a while, but now have a need to perform more advanced searches.  I hav...
by goton1160 Explorer in Splunk Search 05-29-2024
0 8
0
8
jrowland1230
I want to do some analysis on "status" below but having a hard time getting to "status". I start with: | spath path=l...
by jrowland1230 Explorer in Splunk Search 05-29-2024
0 10
0
10
onthakur
Team,I got 3 logs, I need to fetch Transaction_id,Event and Total_Count from LOG1. After that I need to join the 3 lo...
by onthakur Explorer in Splunk Search 05-29-2024
0 2
0
2
Muthu_Vinith
Hi, I'm trying to join two lookups based on the name field. Here's what i have, |inputlookup abc.csv |table name publ...
by Muthu_Vinith Path Finder in Splunk Search 05-28-2024
0 3
0
3
mipa04
Hi, I am completely new to splunk and have to parse field that looks like this:params="['field1: value1', 'field2: va...
by mipa04 Engager in Splunk Search 05-28-2024
0 2
0
2
msalghamdi
Hello Splunkers.   i need your help in creating a search that would count number of values for a field in a month and...
by msalghamdi Path Finder in Splunk Search 05-28-2024
0 2
0
2
karthi2809
Hi All,I have a Splunk dashboard with dynamic token, Here a simplified example of my setup. In the dashboard $new_val...
by karthi2809 Builder in Splunk Search 05-28-2024
0 3
0
3
Orange_girl
Hello, I'm still new to SPLUNK and still learning so apologies for any incorrect naming   I have a search in SPLUNK ...
by Orange_girl Loves-to-Learn Everything in Splunk Search 05-28-2024
0 2
0
2
Get Updates on the Splunk Community!

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...

Skip the Awkward Silence: Have a .conf-ersation at .conf26

Picture this. You arrive at .conf26 already having your socializing and networking plans mapped out. No ...

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...