Splunk Search

Splunk Search
Community Activity
onegame999
SEARCH | stats count(eval(Status="1")) as Assigned count(eval(Status="2")) as In_progress, count(eval(Status="3")) as...
by onegame999 Explorer in Splunk Search 09-30-2019
0 1
0
1
rlippincott
My search looks something like this: index=name | eval request=case(X, Y, X, Y, X, Y) | stats latest(request) as Req...
by rlippincott Explorer in Splunk Search 09-30-2019
0 4
0
4
dkoops
Here is the case: I've build a dashboard with 6 graphs/tables all using the same base search. It works like a charm ...
by dkoops Path Finder in Splunk Search 09-30-2019
0 7
0
7
jspvkey
Hi, I am really new to Splunk and Regular Expression stuff. I was planning to extract just the domain names of all e...
by jspvkey Explorer in Splunk Search 09-30-2019
0 7
0
7
smiththebest
My event log has comma separated field values of 100+ fields. Each field can have about 2-15 different values. Exampl...
by smiththebest New Member in Splunk Search 09-30-2019
0 3
0
3
haripriyasarve1
Status Count Failed 2 Passed 16 Skipped 22 Failed 66 Passed 7 Skipped 8 Please help me out on how to add the va...
by haripriyasarve1 Explorer in Splunk Search 09-30-2019
0 1
0
1
kmrkunal
When I am running the following search: index=main sourcetype="access_combined_wcookie"| stats list(useragent) as Br...
by kmrkunal New Member in Splunk Search 09-29-2019
0 2
0
2
tonakano
2つのデータを別のindex名でインポートしました。 2つのデータは、共通の端末IDにてリンクを取ることが可能です。 ・データA:各端末のバージョンを持ったデータ ・データB:各端末のエラー情報を持ったデータ やりたいこととしては、...
by tonakano Engager in Splunk Search 09-29-2019
0 2
0
2
luca1
I'm trying to extract IP (v4) addresses from different events. For instance, for an event such as: [...] sent ping ...
by luca1 New Member in Splunk Search 09-29-2019
0 3
0
3
Graham_Hanningt
Disclaimer: This is a "self-answering" question: I'm already doing what the question asks. I'm "asking" this question...
by Graham_Hanningt Builder in Splunk Search 09-29-2019
0 2
0
2
fmatera
I have an eventstats search that is working well. What I am having a difficult time with is that I am unable to retur...
by fmatera Explorer in Splunk Search 09-28-2019
0 2
0
2
manishyadav91
Problem: i have 200000 splunk events from which i only want 15000 events ( like vlookup in excel) Splunk events c...
by manishyadav91 New Member in Splunk Search 09-28-2019
0 10
0
10
automayt
tldr: I have an event of interest, and I want to find the next qualified event after it, but without specifically usi...
by automayt Explorer in Splunk Search 09-27-2019
0 1
0
1
sb01splunk
I have the following data: Code Area 1234.1234 ABC 9933.9933 DEF 6611.6611 GHI 8910.8910 ABC 8910.111...
by sb01splunk Explorer in Splunk Search 09-27-2019
1 3
1
3
genesiusj
Hello, This probably a stu*** question, but I am not able to find a clear answer. My code to generate the lookup tab...
by genesiusj Builder in Splunk Search 09-27-2019
0 3
0
3
cblanton
I've been doing ugly hacks around this need for months and now I need to dig in and figure out an eloquent solution e...
by cblanton Communicator in Splunk Search 09-27-2019
0 0
0
0
briancronrath
This has been happening every now and then on our instance where we will have users run a search, it says it will ret...
by briancronrath Contributor in Splunk Search 09-27-2019
1 2
1
2
omicron
Good evening We have installed Splunk Enterprise Version 6.6.0.0. If we look for logs, the extrapolation is ok. If w...
by omicron New Member in Splunk Search 09-27-2019
0 1
0
1
gentcore
Hi, I am running a search and the event structure is displaying as: { [-] line: 2019-09-27 11:47:29,696 [server]...
by gentcore New Member in Splunk Search 09-27-2019
0 1
0
1
koshyk
Could see an old question in 2010 , but just getting confused on the timings/duration vs execution cost I've a sear...
by koshyk Super Champion in Splunk Search 09-27-2019
1 1
1
1
paulholguin
I need help formatting a mulitvalue field, the desired output below, followed by data in the field. For the data in ...
by paulholguin New Member in Splunk Search 09-27-2019
0 3
0
3
JyotiP
I have the following API's, for which I need to count the occurrence of each in every 10 seconds for 1 hour time inte...
by JyotiP Path Finder in Splunk Search 09-27-2019
0 3
0
3
ABurk
Hello, I'm trying to create a search that shows what results are missing today - a, compared to yesterday - b. a and...
by ABurk New Member in Splunk Search 09-27-2019
0 3
0
3
amani28
I have three teams in industrial company, the first starts work at 6am, the second at 2pm, and the third at 10pm, the...
by amani28 New Member in Splunk Search 09-27-2019
0 6
0
6
mkohl
Dear friends, with my company besides investigating log-data we are getting ready to roll-out splunk for the Busines...
by mkohl New Member in Splunk Search 09-27-2019
0 2
0
2
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...

Upgrade Prep for 10.4, Network Observability Deep Dives, and More from Splunk Lantern

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...