Splunk Search

Splunk Search
Community Activity
codedtech
Hey so I have a list of of values, that need to be standardized. The values I'm need to transform look like this: Po...
by codedtech Path Finder in Splunk Search 09-19-2019
0 1
0
1
bapun18
Hi, I want to remove the date convention from a specified path ,can anyone help me with the rex command use for it ?...
by bapun18 Communicator in Splunk Search 09-19-2019
0 1
0
1
alex_orl
I have a some fields like this: **Group_servers|Name_server|Status** Group1| server1|OK Grou...
by alex_orl Engager in Splunk Search 09-19-2019
0 2
0
2
mabinn
Hello, I have a table with three columns, but I only want to display two columns, so I use the field command. When I...
by mabinn Explorer in Splunk Search 09-19-2019
1 3
1
3
Gowtham0809
Hi, I am joining several source files in splunk to degenerate some total count. One thing to note is I am using ctcS...
by Gowtham0809 New Member in Splunk Search 09-18-2019
0 8
0
8
balcv
We have email data reported in Splunk and I want to build an Alert, based on a search, that can trigger if it sees mo...
by balcv Contributor in Splunk Search 09-18-2019
0 1
0
1
helmekkaoui
Hello splunkers, currently the appevent that I'm working on contain lists within lists : trx: [ [-] { ...
by helmekkaoui New Member in Splunk Search 09-18-2019
0 6
0
6
aferone
Hello to all, We have a few indexes that are configured with different max MB's. I want to be able to create a das...
by aferone Builder in Splunk Search 09-18-2019
0 3
0
3
rupesh26
Hi, I have the below events 100, ABC, , , 110, DEF, , , , , , , , ,120 ,GHI, 130, JKL, , , , , , , , ,140 ,MNO , ...
by rupesh26 Path Finder in Splunk Search 09-18-2019
0 2
0
2
jangid
I am not searching anything why above message display very frequently? While I have deleted all saved search.
by jangid Builder in Splunk Search 09-18-2019
1 13
1
13
NancyCunningham
Is there a quick way to retrieve the list of all unique values of an indexed field? I know I could search for the fi...
by NancyCunningham Engager in Splunk Search 09-18-2019
3 7
3
7
anshubathla
I have few firewall logs coming into the Splunk. I need to extract the data from Splunk to get the allowed and blocke...
by anshubathla New Member in Splunk Search 09-18-2019
0 2
0
2
prakashpnvs
Here is my search: index=app sourcetype=access context=PL uri=/PL/data/2.0/space/* and I have the following logs ...
by prakashpnvs Engager in Splunk Search 09-18-2019
0 2
0
2
pavanae
I have a field which contains 2 values for every event as shown below: Field Name :- Username Example Values :- A,B...
by pavanae Builder in Splunk Search 09-18-2019
0 4
0
4
l0gik
I have read a lot of similar questions to mine but I still can't get the results to work as needed. I have two searc...
by l0gik Explorer in Splunk Search 09-18-2019
0 2
0
2
arjun_krishna
I have a set of logs... log1 is task startingtime log having taskbegin ,uniqueID, src ,dest and log2 is task endTime...
by arjun_krishna Explorer in Splunk Search 09-18-2019
0 4
0
4
ssjabid
Hi People, I am trying to run a regex command to cut out a part of the REQ field, On regex 101 it is working fine, ...
by ssjabid Explorer in Splunk Search 09-18-2019
0 5
0
5
htramtran83
ServiceTitle KPITitle ...
by htramtran83 Explorer in Splunk Search 09-18-2019
0 5
0
5
danielbb
Someone accidentally deleted a dataset - a lookup from the app's Datasets section. Is there a way to recover it? It's...
by danielbb Motivator in Splunk Search 09-18-2019
0 2
0
2
seva98
My search starts with this: tag=kpi earliest=1521504000 latest=1521849600 | table _time enterprise_id facility_id sh...
by seva98 Path Finder in Splunk Search 09-18-2019
0 3
0
3
Gowtham0809
We have created several Field aliases based on different source and source types in our splunk query. Most of the F...
by Gowtham0809 New Member in Splunk Search 09-18-2019
0 3
0
3
genesiusj
Hello, My colleague and I noticed an issue in the following SPL. If there is data, the SPL works. If there isn't any ...
by genesiusj Builder in Splunk Search 09-18-2019
0 10
0
10
lsy9891
Hi, I want to display this query in my dashboard in two different charts. So this is my base search query: search ba...
by lsy9891 Engager in Splunk Search 09-18-2019
0 3
0
3
rj12
Since I am new to Splunk is there is demo query for calculating this will be helpful,Basically, i want to count one f...
by rj12 Loves-to-Learn Lots in Splunk Search 09-18-2019
0 1
0
1
arahf
"Error decompressing zstd block: Corrupted block detected" This error appears when I search with datamodel but this...
by arahf Loves-to-Learn in Splunk Search 09-18-2019
0 1
0
1
Get Updates on the Splunk Community!

Unlocking Unified Insights: New Gigamon Federated Search App for Splunk

In today’s data-heavy environment, organizations are caught in a data distribution dilemma. As data volumes ...

GA: New Data Management App in Splunk Platform

Streamlining Data Management: Introducing a unified experience in Splunk Managing data at scale shouldn’t feel ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...