Splunk Search

Splunk Search
Community Activity
dreadangel
I'm attempting to remove some elements from a search. After reading some answers, next was born: index=domain_ctrl_n...
by dreadangel Path Finder in Splunk Search 06-07-2019
0 12
0
12
kemnean2001
A result of a search for a field resourceId is /SUBSCRIPTIONS/9B8874C9-5DC3-46CE-908A-D00EE594A4EC/PROVIDERS/MICROS...
by kemnean2001 New Member in Splunk Search 06-06-2019
0 3
0
3
william_tong
Has anyone out there successfully tried to pull this data from SCCM2016 into Splunk?
by william_tong Engager in Splunk Search 06-06-2019
1 0
1
0
bsree
We are periodically seeing instances where data that was previously indexed shows up differently. The results I got ...
by bsree New Member in Splunk Search 06-06-2019
0 5
0
5
devinmcelheran
Hi everyone, I think the title sums it up, but I'll clarify anyway. So, we would like to pull some information from...
by devinmcelheran New Member in Splunk Search 06-06-2019
0 2
0
2
vcorral
I have some logs that are very inconsistent and need to get a source number that is displayed one of few different wa...
by vcorral New Member in Splunk Search 06-06-2019
0 4
0
4
odle89
I would like to condense this search output in order to see all Windows versions as "Windows" and all Mac versions as...
by odle89 Engager in Splunk Search 06-06-2019
0 2
0
2
eliwasserman92
I am interested in quantifying inbound/outbound traffic traversing an IPsec tunnel on a Palo Alto firewall and visua...
by eliwasserman92 New Member in Splunk Search 06-06-2019
0 2
0
2
sfatnass
Hi everybody I want to know how I can color the all the lines in my table by clicking on a cell. I tried this code a...
by sfatnass Contributor in Splunk Search 06-06-2019
1 4
1
4
ltranarris
I'm using DELIM to extract colon separated KV pairs separated by a comma. DELIMS = ",", ":" This is somewhat worki...
by ltranarris New Member in Splunk Search 06-06-2019
0 0
0
0
YuliyaVassilyev
I am developing a map and would like to add certain labels to it, such as percentage or location name. When i hover o...
by YuliyaVassilyev Explorer in Splunk Search 06-06-2019
0 4
0
4
braicu
Hello all , Please help me to extract all values from this field : arn:aws:iam::aws:policy/AmazonEC2FullAccess,Amaz...
by braicu New Member in Splunk Search 06-06-2019
0 3
0
3
Rhin0Crash
Good morning everyone, having a bit of a tough time with this, as my blacklists and whitelists aren't working properl...
by Rhin0Crash Path Finder in Splunk Search 06-06-2019
0 6
0
6
aohls
I am using the transaction command to identify if a report runs over a certain time. Below is my search: | transacti...
by aohls Contributor in Splunk Search 06-06-2019
0 1
0
1
jip31
Hello I use the search below : [| inputlookup host.csv | table host] index="x" sourcetype="PerfmonMk:Process" ...
by jip31 Motivator in Splunk Search 06-06-2019
0 2
0
2
ahmadsaadwarrai
I am bit new to splunk. I want to search top 4 destinations downloads and total ‘Other’ traffic for each source ip. ...
by ahmadsaadwarrai Explorer in Splunk Search 06-06-2019
0 4
0
4
setiad
I added the data into Splunk after changing the configuration in props.conf for breaking the event as per the need...
by setiad Loves-to-Learn in Splunk Search 06-06-2019
0 0
0
0
splunklearner12
I have a list of CIDR ranges in a single column with name Prefix in a csv file. I only want to show events with sourc...
by splunklearner12 Path Finder in Splunk Search 06-06-2019
0 1
0
1
singh3and12
Hi , I am trying to predict cpu load for 10 days ahead for that I am using LLP algorithm in my query, so in visualiz...
by singh3and12 Path Finder in Splunk Search 06-06-2019
0 2
0
2
abhishekdubey00
Now 6/1/19 12:31:03.763 AM 2019-06-01 00:31:03.763, wanted 6/1/19 12:31:03.763 AM 2019-06-01 00:31:03.763
by abhishekdubey00 Engager in Splunk Search 06-06-2019
0 1
0
1
jip31
HI I use the search below which works fine [| inputlookup host.csv | table host] index="x" sourcetype="winhost...
by jip31 Motivator in Splunk Search 06-06-2019
0 7
0
7
pstamati
I have a metric that want to trend on a timechart but I need to span every 2 weeks, starting the 1 monday of each mon...
by pstamati Path Finder in Splunk Search 06-05-2019
0 11
0
11
spamphile
I'm trying to display a pie chart like so: chart count by transaction.inputSource | lookup transaction_input_sources...
by spamphile Engager in Splunk Search 06-05-2019
0 2
0
2
kkovanis
0400 ERROR DispatchProcess - String not found in literals.conf: DISPATCHCOMM:FAILED_TO_START_PROCESS I need help fi...
by kkovanis New Member in Splunk Search 06-05-2019
0 2
0
2
perlish
Hi all, I want to print results excluding the last line. In Linux, I can use head -n -1 but in Splunk, the head comm...
by perlish Communicator in Splunk Search 06-05-2019
1 7
1
7
Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...