Splunk Search

Splunk Search
Community Activity
codedtech
I need to create a table from the results in the query below. where the utilization is greater than or equal to .7. ...
by codedtech Path Finder in Splunk Search 08-29-2019
0 5
0
5
lavster
ive created a table with monitoring in for our daily checks However I still need to do an eval to get the Total Dura...
by lavster Path Finder in Splunk Search 08-29-2019
0 5
0
5
payton_tayvion
I'm currently creating a list that lists top 10 technologies and I'm trying to rename "Red" as "Red Hat" using the re...
by payton_tayvion Path Finder in Splunk Search 08-29-2019
0 4
0
4
bharathkumarnec
Hi All, Below is my situation: parentkey childkey b c 0 a a b b d b ...
by bharathkumarnec Contributor in Splunk Search 08-29-2019
0 4
0
4
darrenaefc
This is a very basic question. I have a set of data that gives me a list of groups and the names of each user in each...
by darrenaefc Engager in Splunk Search 08-29-2019
0 4
0
4
lsy9891
Hi, my query returns exceptions thrown by every application. How do I filter this query to display only certain appli...
by lsy9891 Engager in Splunk Search 08-29-2019
0 3
0
3
lsy9891
Hi, I have events with the field WindowsIdentity. Some examples of this field values are: WindowsIdentity: IIS APPP...
by lsy9891 Engager in Splunk Search 08-29-2019
0 7
0
7
keiran_harris
Hi Splunk gurus. I have a query problem thats been challenging me for a while. When my polling breaks, or when co...
by keiran_harris Path Finder in Splunk Search 08-29-2019
0 2
0
2
D2SI
Hello there! I am looking for a way to adjust multivalue choice box length to keep them on one line. I have already...
by D2SI Communicator in Splunk Search 08-29-2019
0 2
0
2
pudanelilita
Hi, I need to get numbers between event. 1) event: Heap: 12.8G(15.0G), and 12.8 all the time is changing, and I nee...
by pudanelilita Explorer in Splunk Search 08-29-2019
0 6
0
6
9738078959
When i run this in curl curl index=text|rex field=_raw "ApplicationRegistry-(?.*)" max_match=0 |table source,sourcety...
by 9738078959 Engager in Splunk Search 08-29-2019
0 2
0
2
potluri_88
I have setup splunk enterprise 7.2.1. Custom roles are created under $SPLUNK_HOME/etc/system/local/ authorize.conf ...
by potluri_88 Explorer in Splunk Search 08-29-2019
0 3
0
3
pudanelilita
Hi, I need hep to create table, which shows multiple custom values / field count / % example, how it need to look:
by pudanelilita Explorer in Splunk Search 08-29-2019
0 2
0
2
mrtolu6
I'm getting the following error. How do I troubleshoot? Search process did not exit cleanly, exit_code=-1, descript...
by mrtolu6 Path Finder in Splunk Search 08-29-2019
0 6
0
6
johnsasikumar
Can we save results of a saved search/ search back into splunk. Something similar to a view in SQL database. Splunk q...
by johnsasikumar Path Finder in Splunk Search 08-28-2019
0 1
0
1
grashupfer
Hi Splunkers, I was wading through some of the Enterprise Security correlation searches and I noticed that the Remot...
by grashupfer Engager in Splunk Search 08-28-2019
0 0
0
0
alivesince92
Hello, After my query my result is: <ns2:OriginCountry>RUS</ns2:OriginCountry><ns2:MessageValues><ns2:MessageValu...
by alivesince92 Engager in Splunk Search 08-28-2019
0 11
0
11
vishal9023
Hello, I am new to Splunk and wanted to create a dashboard. I have 8 ORs coming through log but the problem is if an...
by vishal9023 New Member in Splunk Search 08-28-2019
0 7
0
7
seomaniv
I have reviewed https://answers.splunk.com/answers/63730/using-fieldformat-and-rename.html?utm_source=typeahead&utm_m...
by seomaniv Explorer in Splunk Search 08-28-2019
0 3
0
3
chandlercr
I am curious, does including an index help the search any when writing a search? This comes about as me and a frien...
by chandlercr New Member in Splunk Search 08-28-2019
0 2
0
2
hmbisht
I'm trying to extract a string (alphabets and underscore) from a given string which can contain any number of numeric...
by hmbisht Explorer in Splunk Search 08-28-2019
0 3
0
3
rajaguru2790
In the above log User(Saj) to Agent(Rohi) Response for all the conversations in the log should be captured: In the ab...
by rajaguru2790 Explorer in Splunk Search 08-28-2019
0 0
0
0
rajaguru2790
Rohi is the agent and Saj is the user. Using system message we can find the . Then we need to matc h the next line of...
by rajaguru2790 Explorer in Splunk Search 08-28-2019
0 14
0
14
srinivasmanikan
i have a field called application_name it is indexing to Splunk for every 5 min. so if i run top command for getting ...
by srinivasmanikan Engager in Splunk Search 08-28-2019
0 11
0
11
ajdyer2000
If the vulnerability column has a certain value then a new column called ‘Software_Affected’ has a corresponding valu...
by ajdyer2000 Path Finder in Splunk Search 08-28-2019
0 3
0
3
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...