Splunk Search

Splunk Search
Community Activity
rups260386
We are moving log from AWS infrastructure to Splunk index via SQS service, but somehow JSON formatted logs breaking w...
by rups260386 New Member in Splunk Search 06-16-2019
0 4
0
4
noahdietrich
Running Splunk Enterprise 7.3 I am using a text input box to get a list of values from the user to exclude from my se...
by noahdietrich Explorer in Splunk Search 06-16-2019
0 1
0
1
mbasharat
Hi, I have a field name Family. This field contain names of husband and wife in below Figure 1 format: All values ...
by mbasharat Builder in Splunk Search 06-16-2019
0 3
0
3
trucall
Hi, I've a question about sub search, I'm probably misunderstanding docs and other posts. This is my search: index...
by trucall New Member in Splunk Search 06-15-2019
0 7
0
7
msrama5
Hello, I am trying to do percentage on fieldsummary values , following is the query and results for the query - inde...
by msrama5 Explorer in Splunk Search 06-15-2019
0 1
0
1
mdmaala
hi! in my current project, I have to create an area map where it shows the number of parts per hour, I was able to di...
by mdmaala Communicator in Splunk Search 06-15-2019
0 1
0
1
mlaurabermudez
I have a field named "example", I want to find the first time that the first log that contained the word "hello". Ho...
by mlaurabermudez New Member in Splunk Search 06-15-2019
0 2
0
2
wicke_s
I am trying to create a splunk alert for duplicate data and would like some help in creating the splunk search. The d...
by wicke_s Explorer in Splunk Search 06-14-2019
0 2
0
2
a212830
Hi, I'm hoping that someone can help me with a regex. Here's the source data: <OTHERFIELD>some values</OTHERFIEL...
by a212830 Champion in Splunk Search 06-14-2019
0 11
0
11
splunkyhokie
I'm trying to extract a field with the result of an API from a log, either containing "success" or "success.notfound"...
by splunkyhokie New Member in Splunk Search 06-14-2019
0 2
0
2
srs20
I'm trying to find the distance between two geo coordinates and am looking for help with the search syntax.Here's wha...
by srs20 New Member in Splunk Search 06-14-2019
0 3
0
3
amat
Hey y'all, So I am seeing a very unique and strange behavior from Splunk. I noticed an issue where a Splunk search r...
by amat Explorer in Splunk Search 06-14-2019
0 11
0
11
cboillot
I have a log glf log file that I need to get some info out of the heads to format the log data, but other than that, ...
by cboillot Contributor in Splunk Search 06-14-2019
0 2
0
2
Michael
Wow, I can't believe this is kicking my butt -- think I need an idiot check... (yes, I know...  I'm trying to do a...
by Michael Contributor in Splunk Search 06-14-2019
0 4
0
4
gouravdashtcs
Hello Everyone, I want to calculate the downtime for a particular server based on the difference between two EventCo...
by gouravdashtcs Loves-to-Learn in Splunk Search 06-14-2019
0 3
0
3
runiyal
I have following record in my log - 2019-06-13 10:59:56,664 INFO [FileUploadWebScript] [http-apr-8983-exec-5] The U...
by runiyal Path Finder in Splunk Search 06-14-2019
0 7
0
7
sairam1444
Hi SPlunkers, I have a multisite search head cluster TWO SH's SH1 ( SITE1 ) and SH2 ( SITE2 ) AND I have multisite...
by sairam1444 Engager in Splunk Search 06-14-2019
0 1
0
1
quadealexander
Hi, I'm new to Splunk and I've created a table with the following headers: Hardware-Name, Environment, Portfolio, Ve...
by quadealexander Explorer in Splunk Search 06-14-2019
0 2
0
2
petenetwork
So I specify an outer query, it usually starts like this: earliest=06/14/2019:13:00:00 latest=06/14/2019:14:00:00 in...
by petenetwork Explorer in Splunk Search 06-13-2019
0 3
0
3
mkrishnamoorthy
Hey all, Am in a need of dashboard to see my syslog traffic for four arista switches as mentioned below: AA-UKD-AA-...
by mkrishnamoorthy Explorer in Splunk Search 06-13-2019
0 3
0
3
hettervik
Hi, I know it should be possible to use wildcard sourcetypes in props.conf using a some regex magic, as explained he...
by SplunkTrust SplunkTrust in Splunk Search 06-13-2019
0 3
0
3
bmoody3
I'm essentially looking to compare my index field values against an index that has known-bad field values to determin...
by bmoody3 New Member in Splunk Search 06-13-2019
0 8
0
8
reverse
https://regex101.com/r/PNYxi2/2 not working in splunk. Error in 'rex' command: Encountered the following error whil...
by reverse Contributor in Splunk Search 06-13-2019
0 8
0
8
swamysanjanaput
Hello Splunkers, I'm new to Splunk. I am trying my best to learn Splunk and to write an efficient search. I have com...
by swamysanjanaput Explorer in Splunk Search 06-13-2019
0 2
0
2
chengka
Hello, I currently have alerts based on the count of services performed in the last hour. We see that < 40 indicate...
by chengka Explorer in Splunk Search 06-13-2019
0 3
0
3
Get Updates on the Splunk Community!

Agentic Operations Start with Context: Build the Right Data Foundation

Agentic Operations Start with Context: Build the Right Data Foundation   By Courtney Wright, Product Marketing ...

Assisted, Augmented or Agentic? Choose Your Splunk Starting Point

Assisted, Augmented or Agentic? Choose Your Splunk Starting Point   By Courtney Wright, Product Marketing ...

Session 2 | Beyond the Thread: Operationalizing AI with Confidence

Session 2   Beyond the Thread: Operationalizing AI with Confidence    The true power of the Cisco Data Fabric ...
Top Solution Authors