Splunk Search

Splunk Search
Community Activity
antb
We are looking to take an enterprise level approach on the monitoring of critical device logging. We have a list of ...
by antb Path Finder in Splunk Search 06-25-2019
0 3
0
3
lucasdc
Hi Splunkers, I have this search bellow: index=br_activedirectory_microsoft EventCode=4624 Account_Domain=AGBANESPA ...
by lucasdc New Member in Splunk Search 06-25-2019
0 4
0
4
sumitkathpal
Hello Everyone, I am writing a query using tstats command need to use the CIDR values . Below is the example. | tst...
by sumitkathpal Explorer in Splunk Search 06-25-2019
0 3
0
3
jrfreeze
I can't seem to get Splunk to run the search necessary to create a choropleth map. Here is my search: index="main" h...
by jrfreeze Explorer in Splunk Search 06-25-2019
0 1
0
1
insomniacnerd94
Hello. I am trying to get interactive logon logs for all workstations in an organization. The event code for this log...
by insomniacnerd94 Explorer in Splunk Search 06-25-2019
0 2
0
2
vrmandadi
I have a field lastrundate which has values 20190623 , 20190624 , 20190626. I want to include an "-" in between the...
by vrmandadi Builder in Splunk Search 06-25-2019
0 2
0
2
wfskmoney
Is there a limit of max values in a multi-value field listSummary for | eventstats list(variable) as listSummary b...
by wfskmoney Path Finder in Splunk Search 06-25-2019
0 6
0
6
thefakemike
I am attempting to recreate a bar chart based on a start and stop time by workloads. Can anyone help me with the | ...
by thefakemike New Member in Splunk Search 06-25-2019
0 0
0
0
VatsalJagani
In Splunk when we add data via uploading file it gives UI to add and verify props.conf properties there, like timesta...
by SplunkTrust SplunkTrust in Splunk Search 06-25-2019
0 5
0
5
AKG1_old1
Hi, We are using a table in our dashboard and its output is based on multiple saved search. How can I run multiple s...
by AKG1_old1 Builder in Splunk Search 06-25-2019
0 2
0
2
cosminstefanmar
I noticed sample command in Splunk is limited in how many parameters can be used at the same time: https://docs.splun...
by cosminstefanmar Explorer in Splunk Search 06-25-2019
2 9
2
9
bofasplunkguy
I am working with data that is shared/backed up by two separate hosts. Each userID is linked to two hosts. When there...
by bofasplunkguy Explorer in Splunk Search 06-25-2019
0 0
0
0
nsantiago17
I have this search below: index=BI_1 sourcetype=jobs_info fieldJ IN (Flamengo) | search index=BI_2 sourcetype=tel_d...
by nsantiago17 Explorer in Splunk Search 06-25-2019
0 4
0
4
jjoh277
I am currently attempting to test the GeoIP2-Anonymous-IP.mmdb file out in Splunk. I know we can either place it in ...
by jjoh277 Engager in Splunk Search 06-25-2019
0 0
0
0
tkdguq0110
If I get a search like below: index="main" ~~~~~ | table _time value code | join type=outer [search index="main" ~~~...
by tkdguq0110 Path Finder in Splunk Search 06-25-2019
0 3
0
3
d3ag0s
We have started to use the Splunk Deployment within in our infrastructure and I was wondering if there's a way (inclu...
by d3ag0s Engager in Splunk Search 06-25-2019
0 2
0
2
dojiepreji
Hi, After uploading csv file and indexing, I found out that most, if not all of my special characters becomes "�" wh...
by dojiepreji Path Finder in Splunk Search 06-25-2019
0 3
0
3
jip31
Hi In my XML file, I use the syntax below which works perfectly | search SITE=$tok_filtersite|s$ But I need to...
by jip31 Motivator in Splunk Search 06-25-2019
0 5
0
5
astatrial
Hello everyone, I think I don't fully understand the concept of real-time searches. If I configure a search as a rea...
by astatrial Contributor in Splunk Search 06-25-2019
0 6
0
6
julian0125
Hello, Splunkers friends, I need your support; I have a script running on Splunk once at a day, it brings me passwor...
by julian0125 Explorer in Splunk Search 06-25-2019
0 6
0
6
sajithpm101
Hi, I have to pass a custom 'startdate' and 'enddate' in Splunk query in the search tab (without the help of Splunk d...
by sajithpm101 New Member in Splunk Search 06-24-2019
0 11
0
11
ahmadsaadwarrai
I have scenario where I want variable (Loss) to be 0 if no result found of below search: | dbxquery query="SELECT *...
by ahmadsaadwarrai Explorer in Splunk Search 06-24-2019
0 1
0
1
ronny_wang
Hi, I am trying to write a conditional stats command based on a field value. So for example: I have a field called ...
by ronny_wang Explorer in Splunk Search 06-24-2019
0 4
0
4
big_nuggets
Hi, Hoping someone here can help because I've been running into walls on it. I'm trying to insert a link on every tr...
by big_nuggets Explorer in Splunk Search 06-24-2019
0 1
0
1
anweshar
My search condition is checking for results less than 10 every 45 minutes. The problem is we don't have that much tra...
by anweshar New Member in Splunk Search 06-24-2019
0 3
0
3
Get Updates on the Splunk Community!

Application management with Targeted Application Install for Victoria Experience

  Experience a new era of flexibility in managing your Splunk Cloud Platform apps! With Targeted Application ...

Index This | What goes up and never comes down?

January 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Splunkers, Pack Your Bags: Why Cisco Live EMEA is Your Next Big Destination

The Power of Two: Splunk + Cisco at "Ludicrous Scale"   You know Splunk. You know Cisco. But have you seen ...
Top Solution Authors