Splunk Search

Splunk Search
Community Activity
oda
I want to get time in this log file. [sample log] 1234 567 789^G20190613^G14:00^Gsample_log ^G mean control code. ...
by oda Communicator in Splunk Search 06-13-2019
0 1
0
1
jip31
hello I use the search below which works fine [| inputlookup host.csv | table host] index="x" sourcetype=XmlWi...
by jip31 Motivator in Splunk Search 06-13-2019
0 4
0
4
aohls
We have a few servers clustered together and have created a lookup table that combines them. What I would like to do...
by aohls Contributor in Splunk Search 06-13-2019
0 8
0
8
lewisgrantevans
Hello Splunk Ninjas, I have created an 'aging' field that counts the number of days since a certain date & time. I w...
by lewisgrantevans Explorer in Splunk Search 06-13-2019
1 14
1
14
rakesh_498115
Hi All, I was in need of a requirement to find the error codes and its occurences windows for a given day to be prin...
by rakesh_498115 Motivator in Splunk Search 06-13-2019
0 6
0
6
orion44
Currently the inputlookup return function requires you to input a hardcoded total of records to check when used in a ...
by orion44 Communicator in Splunk Search 06-12-2019
0 2
0
2
reverse
50.99.220.89 - 50.99.248.89 - - [12/Jun/2019:08:27:13 -0400] "POST /ccc67/JJ/U7UY/BCFUVGYUYGI11HTTP/1.1" 500 6629 ab...
by reverse Contributor in Splunk Search 06-12-2019
0 16
0
16
iancorrea
I have this table, and i just want to remove the rows that has the same cost on that date if the B1 of that row is ...
by iancorrea Path Finder in Splunk Search 06-12-2019
0 3
0
3
robf
I'm trying to add this to my search but the number of lookup users may change!! (|inputlookup lotsofusers.csv | retu...
by robf Path Finder in Splunk Search 06-12-2019
2 7
2
7
irfan_10578
Hai everyone, I'm still a newbie to using Splunk. I want to ask about selecting and joining fields in 2 sources. Ex...
by irfan_10578 Engager in Splunk Search 06-12-2019
0 6
0
6
ddrillic
A customer is asking: "How can we tell where an HEC push is actually coming in from? or is that just not logged anyw...
by ddrillic Ultra Champion in Splunk Search 06-12-2019
0 14
0
14
nawazns5038
Hi, I have found that there are some events in Splunk that are merged and it is on a random basis and in a huge data...
by nawazns5038 Builder in Splunk Search 06-12-2019
0 5
0
5
cthulhucalling
I have a small CSV file with common attack signatures in them that I have uploaded as a lookup called web_attack_sign...
by cthulhucalling Engager in Splunk Search 06-12-2019
0 11
0
11
amat
I am trying to figure out how the Size value in the Job page is calculated and where that is logged in splunk. I che...
by amat Explorer in Splunk Search 06-12-2019
1 0
1
0
bryceweb22
I would like to get the percentage of each HTTP status code. I have the count of each status code that appears and I ...
by bryceweb22 Path Finder in Splunk Search 06-12-2019
0 3
0
3
reverse
There are multiple ip addresses in a raw event line and I only need the first one How can I achieve that? 192.168.0...
by reverse Contributor in Splunk Search 06-12-2019
0 4
0
4
nick405060
Hi guys. Can someone please post working js code for a button that toggles a token from "true" to "false" and back. ...
by nick405060 Motivator in Splunk Search 06-12-2019
1 3
1
3
summitsplunk
Let's say I'm doing a stats count by x,y How would I formulate a WHERE that compares the string value of x and y an...
by summitsplunk Communicator in Splunk Search 06-12-2019
0 2
0
2
90509
Hi Team, I would like to find out user failed login attempts which are greater than 6 times and those 6 failed login ...
by 90509 Engager in Splunk Search 06-12-2019
0 9
0
9
jwalzerpitt
I created the following regex to extract the fields for our shibboleth:audit sourcetype events: ^(?:[^\|\n]*\|){2}(?...
by jwalzerpitt Influencer in Splunk Search 06-12-2019
0 1
0
1
dpickett
I have been working on the Fundamentals 1 Certification using the free Cloud Trail instance of Splunk. My instance ha...
by dpickett New Member in Splunk Search 06-12-2019
0 0
0
0
bryceweb22
I need help with extracting and graphing the HTTP status code which is always the end of every log formatted as; `20...
by bryceweb22 Path Finder in Splunk Search 06-12-2019
0 3
0
3
rahulkawadkar26
Hi, I needed help with using field extracted in the search(ORG) to be used as input for another search where a simil...
by rahulkawadkar26 New Member in Splunk Search 06-12-2019
0 5
0
5
a_naoum
Hello, I'm trying to use calculated field on data with url field. Simple doesn't work. Even a very simple 'upper(url...
by a_naoum Path Finder in Splunk Search 06-12-2019
0 10
0
10
jkumarr2
I am trying to filter out all URLs which are for file downloads and those URLs will end with the file extension. Eg -...
by jkumarr2 New Member in Splunk Search 06-12-2019
0 1
0
1
Get Updates on the Splunk Community!

Splunk App Dev Quarterly Roundup: AI, Agents, and Innovation!

Another quarter, another wave of innovation. From complex integrations to pushing the limits ...

What’s New in Splunk AI: Volume 02

Welcome to the second edition of “What’s New in Splunk AI” where we look at the latest and greatest updates, ...

Value Insights: Now Generally Available in the CMC

Organizations are under pressure to move faster, control cost, expand AI adoption, and prove value with more ...
Top Solution Authors