Splunk Search

Splunk Search
Community Activity
darrenaefc
This is a very basic question. I have a set of data that gives me a list of groups and the names of each user in each...
by darrenaefc Engager in Splunk Search 08-29-2019
0 4
0
4
lsy9891
Hi, my query returns exceptions thrown by every application. How do I filter this query to display only certain appli...
by lsy9891 Engager in Splunk Search 08-29-2019
0 3
0
3
lsy9891
Hi, I have events with the field WindowsIdentity. Some examples of this field values are: WindowsIdentity: IIS APPP...
by lsy9891 Engager in Splunk Search 08-29-2019
0 7
0
7
keiran_harris
Hi Splunk gurus. I have a query problem thats been challenging me for a while. When my polling breaks, or when co...
by keiran_harris Path Finder in Splunk Search 08-29-2019
0 2
0
2
D2SI
Hello there! I am looking for a way to adjust multivalue choice box length to keep them on one line. I have already...
by D2SI Communicator in Splunk Search 08-29-2019
0 2
0
2
pudanelilita
Hi, I need to get numbers between event. 1) event: Heap: 12.8G(15.0G), and 12.8 all the time is changing, and I nee...
by pudanelilita Explorer in Splunk Search 08-29-2019
0 6
0
6
9738078959
When i run this in curl curl index=text|rex field=_raw "ApplicationRegistry-(?.*)" max_match=0 |table source,sourcety...
by 9738078959 Engager in Splunk Search 08-29-2019
0 2
0
2
potluri_88
I have setup splunk enterprise 7.2.1. Custom roles are created under $SPLUNK_HOME/etc/system/local/ authorize.conf ...
by potluri_88 Explorer in Splunk Search 08-29-2019
0 3
0
3
pudanelilita
Hi, I need hep to create table, which shows multiple custom values / field count / % example, how it need to look:
by pudanelilita Explorer in Splunk Search 08-29-2019
0 2
0
2
mrtolu6
I'm getting the following error. How do I troubleshoot? Search process did not exit cleanly, exit_code=-1, descript...
by mrtolu6 Path Finder in Splunk Search 08-29-2019
0 6
0
6
johnsasikumar
Can we save results of a saved search/ search back into splunk. Something similar to a view in SQL database. Splunk q...
by johnsasikumar Path Finder in Splunk Search 08-28-2019
0 1
0
1
grashupfer
Hi Splunkers, I was wading through some of the Enterprise Security correlation searches and I noticed that the Remot...
by grashupfer Engager in Splunk Search 08-28-2019
0 0
0
0
alivesince92
Hello, After my query my result is: <ns2:OriginCountry>RUS</ns2:OriginCountry><ns2:MessageValues><ns2:MessageValu...
by alivesince92 Engager in Splunk Search 08-28-2019
0 11
0
11
vishal9023
Hello, I am new to Splunk and wanted to create a dashboard. I have 8 ORs coming through log but the problem is if an...
by vishal9023 New Member in Splunk Search 08-28-2019
0 7
0
7
seomaniv
I have reviewed https://answers.splunk.com/answers/63730/using-fieldformat-and-rename.html?utm_source=typeahead&utm_m...
by seomaniv Explorer in Splunk Search 08-28-2019
0 3
0
3
chandlercr
I am curious, does including an index help the search any when writing a search? This comes about as me and a frien...
by chandlercr New Member in Splunk Search 08-28-2019
0 2
0
2
hmbisht
I'm trying to extract a string (alphabets and underscore) from a given string which can contain any number of numeric...
by hmbisht Explorer in Splunk Search 08-28-2019
0 3
0
3
rajaguru2790
In the above log User(Saj) to Agent(Rohi) Response for all the conversations in the log should be captured: In the ab...
by rajaguru2790 Explorer in Splunk Search 08-28-2019
0 0
0
0
rajaguru2790
Rohi is the agent and Saj is the user. Using system message we can find the . Then we need to matc h the next line of...
by rajaguru2790 Explorer in Splunk Search 08-28-2019
0 14
0
14
srinivasmanikan
i have a field called application_name it is indexing to Splunk for every 5 min. so if i run top command for getting ...
by srinivasmanikan Engager in Splunk Search 08-28-2019
0 11
0
11
ajdyer2000
If the vulnerability column has a certain value then a new column called ‘Software_Affected’ has a corresponding valu...
by ajdyer2000 Path Finder in Splunk Search 08-28-2019
0 3
0
3
cip1
Hi, I need help in converting the time provided by a lookup. | inputlookup AD_User_LDAP_list | search cn=jon1 | fiel...
by cip1 Engager in Splunk Search 08-28-2019
0 3
0
3
sheloaha
I run a search to find all events relating to a particular transaction number i.e. index=myindex searchstring | tran...
by sheloaha Path Finder in Splunk Search 08-28-2019
0 6
0
6
elvistitus
For example, I have events that contain a Version field and also a timeTaken field. I want to display two tables of ...
by elvistitus New Member in Splunk Search 08-28-2019
0 2
0
2
rwills2
I am trying to create a pareto chart. I have already done that portion of the work. I have been asked to identify a n...
by rwills2 New Member in Splunk Search 08-28-2019
0 2
0
2
Get Updates on the Splunk Community!

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...

Splunk Technical Support Is Moving to Cisco Support Tools

Introduction Splunk technical support is transitioning to Cisco’s support environment. This change brings ...
Top Solution Authors