Splunk Search

Splunk Search
Community Activity
RaymondN80
I'm trying to trim the URL's for a particular search, where it removes everything after the last "/". In other words:...
by RaymondN80 New Member in Splunk Search 07-29-2019
0 10
0
10
mnarmada
Hello All, I have a log file where I am trying to extract one match, and If I find that match I have to put as "File...
by mnarmada Path Finder in Splunk Search 07-29-2019
0 8
0
8
vnguyen46
Hi, I have two different records: [2019-07-22 10:32:03.819930 -0500] rprt s=2tuw17mc0b cmd=env_rcpt value=ken@gmail.c...
by vnguyen46 Contributor in Splunk Search 07-29-2019
0 5
0
5
jwalzerpitt
I am trying to figure out what end of the anchor parameter to use for the Symantec event. Here is a snippet of the ...
by jwalzerpitt Influencer in Splunk Search 07-29-2019
0 3
0
3
mcg_connor
I am trying to create an alert for the below search that would go off if within the event there are 10 times where Ev...
by mcg_connor Path Finder in Splunk Search 07-29-2019
0 2
0
2
ketaka
I created a custom search command on windows, but the following error message is displayed and I can not execute it. ...
by ketaka Explorer in Splunk Search 07-29-2019
0 4
0
4
officialsubho
Have the following queries query 1 - cf_org_name="xxx" cf_space_name="yyy" cf_app_name=zzz index=123* msg= "Transact...
by officialsubho New Member in Splunk Search 07-29-2019
0 3
0
3
nick405060
Hi there, I have a real-time table in one of my dashboards that doesn't update when you first load the page. If you ...
by nick405060 Motivator in Splunk Search 07-29-2019
0 9
0
9
espengler
I'm running CRL expiration checks and using splunk to read the logs to track the last check run and when they are nex...
by espengler Engager in Splunk Search 07-29-2019
0 8
0
8
sbimizry
How to I must a write result from stats count to field? Example ideas... | inputlookup lookup | stats count(eval(fi...
by sbimizry Engager in Splunk Search 07-29-2019
0 6
0
6
watersd
I'm trying to chart the exception rate of various apps that we run, and would ideally be generating a table that look...
by watersd Engager in Splunk Search 07-29-2019
0 5
0
5
splunkuseradmin
Hi all, Generating some calls logs from different timezones America , ASIA, UK and so on. So I am running a search w...
by splunkuseradmin Path Finder in Splunk Search 07-29-2019
0 3
0
3
knalla
Hello, I'm trying to pass values of field to other field. Is there a best way to do it? Query: index=alerts stat...
by knalla Path Finder in Splunk Search 07-29-2019
0 1
0
1
misteryuku
Am i right to say that the results derived from the Splunk search is returned as XML by default? I was using the Java...
by misteryuku Communicator in Splunk Search 07-29-2019
0 2
0
2
kalyani1184
Hi. I am trying to run a search from a Splunk API in java, store the results with fields host, sourcetype, source in ...
by kalyani1184 New Member in Splunk Search 07-29-2019
0 18
0
18
bowesmana
I have a modal dialog that pops up and shows a table of results. When I click OK on that, I do some processing on the...
by SplunkTrust SplunkTrust in Splunk Search 07-29-2019
0 0
0
0
bibekmantree
I am doing search on data coming from fluentd k8s. On top of that data , I wanted to filter on basis of field. A...
by bibekmantree New Member in Splunk Search 07-29-2019
0 5
0
5
aarichow
I have two different indexes, with the common field being username. One index that contains phishing history data. ...
by aarichow Explorer in Splunk Search 07-28-2019
3 5
3
5
mbasharat
I need to monitor a text file. Each line in this file is considered an event. There are three different types of even...
by mbasharat Builder in Splunk Search 07-28-2019
0 11
0
11
arusoft
I created a baseline by adding eval field as shown below: | eval BaseLine=1000|fields _time, ResponeTime, BaseLine ...
by arusoft Communicator in Splunk Search 07-28-2019
0 2
0
2
a212830
Hi, I'm trying to use eval for hosts, and need to use wildcards. I tried the following, but it's not working. How...
by a212830 Champion in Splunk Search 07-28-2019
0 4
0
4
amaurya1
DON'T GET INTIMIDATED BY THE LENGTH OF THE QUESTION. I'm getting account numbers from the first three queries. I wan...
by amaurya1 Explorer in Splunk Search 07-28-2019
0 6
0
6
andreyglauzer
I have events similar to these: component, technology, mydate silva, java, 06/20/2019 souza, java, 06/20/2019 silva,...
by andreyglauzer New Member in Splunk Search 07-28-2019
0 6
0
6
lbrhyne
New to Splunk and having a difficult time returning the correct results. The below query works... meaning that it con...
by lbrhyne Path Finder in Splunk Search 07-28-2019
0 4
0
4
amunag439
I have the following logs where the output can be from application or database or from third party source. id=11111 ...
by amunag439 Explorer in Splunk Search 07-28-2019
0 2
0
2
Get Updates on the Splunk Community!

(re)Introducing the Splunk Community Champions + 2026 – 2027 Splunk MVPs ...

This program exists as a channel to empower and recognize Splunk advocates and help supercharge initiatives to ...

Introducing the 2026 - 2027 SplunkTrust cohort!

The goal of the SplunkTrust™ membership has historically been to acknowledge and recognize those who go above ...

Pro Tips for .conf26: How to Prep Like a Splunk Veteran

There’s no shortage of incredible content lined up for .conf26 in Denver, from deep-dive technical sessions ...
Top Solution Authors