Splunk Search

Splunk Search
Community Activity
keronedave
I have three columns from a search query. I would like to count the items in one column and display it next to the ot...
by keronedave Explorer in Splunk Search 07-08-2019
0 7
0
7
alucarddjin
I have a lookup list of users and I want to get that date off their last event (or empty if no event) but I keep gett...
by alucarddjin Path Finder in Splunk Search 07-08-2019
0 3
0
3
jip31
hello The max function in this search doesnt works. Idem with latest! Its not the latest or max event taked into acc...
by jip31 Motivator in Splunk Search 07-08-2019
0 9
0
9
almanacht
Hi, I have a menu with some option how I can chose with the box menu option, my question is quite simple because I ha...
by almanacht Explorer in Splunk Search 07-08-2019
0 0
0
0
genesiusj
Hello, I’m having issues with a report not displaying correctly. If I save a bar chart as a normal report, the Y-axi...
by genesiusj Builder in Splunk Search 07-08-2019
0 3
0
3
afx
I have a totally weird case... I have field extractions defined in props.conf either individually or all in one extra...
by afx Contributor in Splunk Search 07-08-2019
0 43
0
43
jip31
hi I use the search below "LAST_SEEN" is a field with a date format like "2019-06-07 09:12:40.0" I need to add an ev...
by jip31 Motivator in Splunk Search 07-08-2019
0 9
0
9
vishaltaneja070
Hello, I need to check the regex condition only on first 300 characters, if the regex condition available after tha...
by vishaltaneja070 Motivator in Splunk Search 07-08-2019
0 15
0
15
SathyaNarayanan
Hi Splunkers, i installed Splunk Maps+ apps 3.0.2 version, after installing i uploaded the KMZ file in it. After u...
by SathyaNarayanan Path Finder in Splunk Search 07-08-2019
0 0
0
0
ketaka
I want to use dashboard text input in custom search command. Please tell me some tips such as how to use and sentence...
by ketaka Explorer in Splunk Search 07-07-2019
0 2
0
2
qazwsxe
I want to get hundreds of millions of data from billions of data, but it takes more than an hour each time.I just use...
by qazwsxe New Member in Splunk Search 07-07-2019
0 56
0
56
mkhedr
how to remove other values from this search syntax index=main sourcetype=access_combined_wcookie productId | chart c...
by mkhedr Explorer in Splunk Search 07-07-2019
0 1
0
1
denymw
Hi, I am trying to get a visualization to show the average sentiment of a search term by the index. index=* foo | ta...
by denymw Explorer in Splunk Search 07-07-2019
0 2
0
2
sanjeev543
Hi There, I have scheduled a report to run and generate the CSV file and sent it over email, it had been working till...
by sanjeev543 Communicator in Splunk Search 07-07-2019
0 2
0
2
massumtaqi
if an action 1 triggers one event of common field=A and action 2 triggers ten events of common field= A, B or C. How...
by massumtaqi New Member in Splunk Search 07-06-2019
0 5
0
5
aakines
Suppose I performed the following subsearch index=whatever "name=" [|inputlookup lookup_file.csv | return 100 $look...
by aakines Engager in Splunk Search 07-05-2019
0 3
0
3
TylerJVitale
I want to set up an alert to trigger if three conditions are met: Volume of a particular app is above 100 over the l...
by TylerJVitale Explorer in Splunk Search 07-05-2019
0 3
0
3
NirajAlly
ok, let me try my best to explain my question here. I have Json format logs and now I need them to compare based on...
by NirajAlly New Member in Splunk Search 07-05-2019
0 4
0
4
twh1
I have requirement to print product details in a table. where i am getting some value from the log and some i have pr...
by twh1 Communicator in Splunk Search 07-05-2019
0 4
0
4
tajones
I’ve seen this example many time in splunk websites using tags dashboard-container dashboard-row dashboa...
by tajones New Member in Splunk Search 07-05-2019
0 13
0
13
mbasharat
I have an event as below: 2019-07-05 14:00:14 CDT d453bce1-aa68-4674-988e-ed6ab174a1d4 out: ID-sample.sample.com-156...
by mbasharat Builder in Splunk Search 07-05-2019
0 3
0
3
CryoHydra
I need help on splunk search for the below condition, The scenario here is like i need to generate a report on hosts...
by CryoHydra Path Finder in Splunk Search 07-05-2019
0 4
0
4
ajitshukla61116
HI , I have an urgent issue please help I want to generate a scheduled alert at every 30 minutes, which will have the...
by ajitshukla61116 Path Finder in Splunk Search 07-05-2019
0 6
0
6
rashi83
I have many URI's and a user field available and want to count the times URI has been accessed by user. Like: URI ...
by rashi83 Path Finder in Splunk Search 07-05-2019
0 1
0
1
bobweinerjr
I would like to store a regex pattern in a variable and use it to extract data. I've seen lots of similar questions ...
by bobweinerjr Explorer in Splunk Search 07-05-2019
0 11
0
11
Get Updates on the Splunk Community!

Federated Search for Snowflake Is Now Generally Available on Splunk Cloud Platform

Unlocking Data-In-Place Search Across Splunk and Snowflake  Enterprise data is increasingly distributed across ...

Help Us Build Better Splunk Regex Puzzles (And Win Prizes!)

If you’ve spent any time in the Splunk Community Slack, you’ve likely seen our resident Splunk Trust ...

Fuel Your Journey: What’s Waiting for You at the .conf26 Acceleration Station

Navigating the show floor at .conf26 isn't just about keynotes and technical breakout sessions; it's also ...
Top Solution Authors