Splunk Search

Splunk Search
Community Activity
babcolee
I have two lines of events that are unnecessary because there is no date and would like to null queue these out. I h...
by babcolee Path Finder in Splunk Search 06-24-2019
0 7
0
7
amunag439
Hello, I have the following logs: 2019-05-30 14:39:00,115 traceId=AAAAAA msg=Incoming with body {"parameters":[{"da...
by amunag439 Explorer in Splunk Search 06-24-2019
1 3
1
3
jerrytao
First search: index=A source="FunctionHandler@*" "ul-ctx-caller-span-id"=null With this search, I can get several...
by jerrytao Engager in Splunk Search 06-24-2019
0 11
0
11
wennebo1
We are trying to extract both fields and their names from events that have a variable number of elements. We have det...
by wennebo1 Explorer in Splunk Search 06-24-2019
0 7
0
7
crisjnelson
Here is my attempt at creating a chart of hourly counts for previous Fridays. I have added row and column totals, but...
by crisjnelson Explorer in Splunk Search 06-24-2019
0 0
0
0
sbhuie
Having trouble creating a search that will determine if any single unique IP hits a defined URL 5 or more times withi...
by sbhuie New Member in Splunk Search 06-24-2019
0 2
0
2
kylemain
I have a field called "windows_event_id" which contains integer values that I am adding to a table. I am certain th...
by kylemain New Member in Splunk Search 06-24-2019
0 0
0
0
nareshchenchati
Hello, I'm trying to break the events by time stamps but it is networking, can anyone help me on this? Here is the ra...
by nareshchenchati Explorer in Splunk Search 06-24-2019
0 6
0
6
kirangurram
Dear Experts , Need your help with regular expression. I have an XML tag in the field f. I would like to extract all...
by kirangurram Explorer in Splunk Search 06-24-2019
0 5
0
5
damucka
Hello, I am trying to find the delta between two tables, but somehow failing with it. My code is as follows: | ta...
by damucka Builder in Splunk Search 06-24-2019
0 1
0
1
spectrum2035
Does anyone has created any correlation rule between Nessus Vulnerability scanner and Paloalto IDS. We are getting d...
by spectrum2035 Explorer in Splunk Search 06-24-2019
0 1
0
1
poorni_p
I have a token team_name = "Brenden team, walt, Paul " I want to replace "Brenden team" with his team members details...
by poorni_p Explorer in Splunk Search 06-24-2019
0 1
0
1
poorni_p
I have a multiselect fied with $team_name$ with Team A, Team B, Team C fields If I select Team A and Team B in multi...
by poorni_p Explorer in Splunk Search 06-24-2019
0 1
0
1
gregbo
All the ones I ever see is Python. I need one that uses a bash script.
by gregbo Communicator in Splunk Search 06-24-2019
0 1
0
1
jackreeves
I need to find out the Top 20 sites within my sourcetype and then from there be able to do further analysis on other ...
by jackreeves Explorer in Splunk Search 06-24-2019
0 5
0
5
jorambokma
Hello, We are trying to split a nested json message into seperated events. As we not wish to use the spath function...
by jorambokma Explorer in Splunk Search 06-24-2019
0 4
0
4
tdiestel
Hi; I'm messing around with the new Bubble Chart Feature and it is almost doing everything I want but coloring. Here...
by tdiestel Path Finder in Splunk Search 06-23-2019
2 2
2
2
madisand
I have the data in the following format Msg Id Event Timestamp ( Format Example) 123 A 24/06/2019 10:02 123 B ...
by madisand New Member in Splunk Search 06-23-2019
0 0
0
0
jkumarr2
I am trying to write a regex which will detect/match URLs ending with 2, 3 & 4 letter file extensions (eg - .py, .txt...
by jkumarr2 New Member in Splunk Search 06-23-2019
0 3
0
3
nilanjankc
New to Splunk, can anyone please help me with the below scenario? I am receiving events like below: Event LastUp...
by nilanjankc New Member in Splunk Search 06-23-2019
0 2
0
2
ahmadsaadwarrai
Sometimes my search gets fail and unable to fetch data because of below error: ConnectionTimeout at "/opt/splunk/et...
by ahmadsaadwarrai Explorer in Splunk Search 06-23-2019
0 3
0
3
prerana_jain
Ex: "Acquired" is a keyword. This keyword is getting for every minute. I have to get alert if this keyword is not g...
by prerana_jain Explorer in Splunk Search 06-23-2019
0 2
0
2
adamfrisbee
I am creating two apps that use the same data (weird,I know, but I am testing something in my environment). I've buil...
by adamfrisbee Explorer in Splunk Search 06-23-2019
0 1
0
1
mbasharat
Hi, I am looking to create a search that allows me to get a list of all fields in addition to below: | tstats count ...
by mbasharat Builder in Splunk Search 06-22-2019
0 4
0
4
PRASADNALLIBOEN
I need a Splunk search for finding server uptime for Windows and Linux index= linux sourcetype=cpu
by PRASADNALLIBOEN New Member in Splunk Search 06-22-2019
0 2
0
2
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Character substitutions with Regular Expressions

This challenge was first posted on Slack #puzzles channelFor BORE at .conf23, we had a puzzle question which ...

Splunk Community Badges!

  Hey everyone! Ready to earn some serious bragging rights in the community? Along with our existing badges ...

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...