Splunk Search

Splunk Search
Community Activity
_smp_
I have an event with a mix of JSON and non-JSON data. I have successfully extracted a Payload field with props whose ...
by _smp_ Builder in Splunk Search 05-22-2019
2 5
2
5
roopeshetty
Hi guys, Is there any way we can display more than 100 rows in a table format dashboard? We tried to modify the ...
by roopeshetty Path Finder in Splunk Search 05-22-2019
0 6
0
6
marxsabandana
I need to display a table that will show all the rows without pagination. I have already tried using "showPager" opti...
by marxsabandana Path Finder in Splunk Search 05-22-2019
0 2
0
2
pavanae
I have the regex query as below sourcetype=syslog | rex field=_raw "(?rshd[^:]: .+) as (?[^\s:]+)" | rex field=_ra...
by pavanae Builder in Splunk Search 05-22-2019
0 2
0
2
mlevsh
I need to extract "hostname" from the path in data input on directory monitoring. Path: /export/var/path/host1.log ...
by mlevsh Builder in Splunk Search 05-22-2019
0 13
0
13
saravanafd
Has been busy for "639" seconds using rex command i need to extract value 639 and store it in one field. Please he...
by saravanafd Explorer in Splunk Search 05-22-2019
0 3
0
3
vishaltv
Hi team, Please help me to figure out the issue. I would like to create a dashboard using my Audit logs to capture m...
by vishaltv Path Finder in Splunk Search 05-22-2019
0 3
0
3
zacksoft
host = Mayhem sourcetype="phutans:servo" host=R00878 | eval headers=split(_raw," ") | eval plant_length=mvindex(he...
by zacksoft Contributor in Splunk Search 05-22-2019
0 9
0
9
bosch_softtec
Hi, I am trying to create a new field "foo" whose content is generated from field "bar", depending on the content of...
by bosch_softtec Path Finder in Splunk Search 05-22-2019
0 2
0
2
stwong
Hi, we've a simple web application in PHP that queries user's status from different sources (e.g. LDAP, Oracle DB, et...
by stwong Communicator in Splunk Search 05-21-2019
0 3
0
3
jadengoho
How can i get latest value of all ID (1-1,1-2,2-1,2-2). considering there are no latest data on ID(2-1,2-2) Data: 1...
by jadengoho Builder in Splunk Search 05-21-2019
0 1
0
1
balcv
I have an sql database containing a list of ip addresses and a bunch of other fields that I can query from Splunk usi...
by balcv Contributor in Splunk Search 05-21-2019
0 5
0
5
singh3and12
Hi , I have used following query for predicting disk transfer of particular host, here we are using LLP algorithm i...
by singh3and12 Path Finder in Splunk Search 05-21-2019
0 12
0
12
zacksoft
I have a lookup table from a csv that looks like this name exam1 exam2 exam3 john good bad bad peter ...
by zacksoft Contributor in Splunk Search 05-21-2019
0 1
0
1
jip31
Hello I use the search below in order to monitore process with a CPU charge > 80% BUT What I exactly need is to moni...
by jip31 Motivator in Splunk Search 05-21-2019
0 8
0
8
moorhead_30s
Hello, I'm writing a custom Splunk search command that runs a query on another Splunk host, then returns those result...
by moorhead_30s New Member in Splunk Search 05-21-2019
0 3
0
3
reverse
I want to add 2 text boxes where I can key in 2 dates. Later I want to use these 2 dates at 4 locations of my query. ...
by reverse Contributor in Splunk Search 05-21-2019
0 3
0
3
surekhasplunk
| mstats max(_value) as Bits_in_sec where index=ehealth (host="SC2CLK-CLOUD-CFD-VDC2" OR host="SC2BJV-CLOUD-CFD-VDC2"...
by surekhasplunk Communicator in Splunk Search 05-21-2019
0 2
0
2
NAVEEN_CTS
Hi I need a help with a Splunk search to find the number of users having access for each indexes. Thanks
by NAVEEN_CTS Path Finder in Splunk Search 05-21-2019
0 1
0
1
officialsubho
I have this following string 2019-05-17 11:30:14.262 INFO 13 --- [pool-3-thread-1] com.abcd.efgh.ijk.statuspage.St...
by officialsubho New Member in Splunk Search 05-21-2019
0 4
0
4
vzedbny
In a testing distributed environment, we are experiencing indexing delays. With a replication factor of 3, when would...
by vzedbny Engager in Splunk Search 05-21-2019
0 1
0
1
aokhovat
Splunk new-bee here. Let's say I have two records in the log file: one record has " myID=1234 ticker= abc" and the ...
by aokhovat New Member in Splunk Search 05-21-2019
0 1
0
1
arlombar
As the title says im running into an issue with what appears to be the pull count from SQS queues. For example, right...
by arlombar Explorer in Splunk Search 05-21-2019
0 0
0
0
chadman
I have a search that works most of the time, but sometimes just causes Splunk to crash and requires a restart. I hav...
by chadman Path Finder in Splunk Search 05-21-2019
0 7
0
7
betchim_gerwili
As the title suggests, I'm having issues with a base search that I'm trying to create. The base search uses tokens t...
by betchim_gerwili Explorer in Splunk Search 05-21-2019
0 2
0
2
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...
Top Solution Authors