| index=* [search index=_internal [| rest /services/authentication/current-context splunk_server=local | fields usernam... by arunsundarm Engager in Splunk Search 05-13-2019 0 3 | 0 | 3 | ||
| May I know what is User Activity as per PCI requirement 10 ? On going SSAE 18 audit, there is one question - please ... by brpsingara Explorer in Splunk Search 05-13-2019 0 0 | 0 | 0 | ||
| Other than making reports more readable, are there other reasons to use the upper/lower function of eval? by smanganiello_sp Splunk Employee 0 4 | 0 | 4 | ||
| I'm trying to write a dbinspect query to calculate the # of days of data that is stored in our hot/warm storage parti... by mschlapfer Explorer in Splunk Search 05-13-2019 0 2 | 0 | 2 | ||
| Hello there, I am stuck with a dynamic field name extraction. The data is partly JSON and sometimes contains nested... by D2SI Communicator in Splunk Search 05-13-2019 0 2 | 0 | 2 | ||
| Hi there, I want to build a query with strings from the lookup table. I have the list of domains in the look up table... by afulamba Explorer in Splunk Search 05-13-2019 0 19 | 0 | 19 | ||
| How can one delete stale lookup files? Sometimes users output their data to a lookup table file to reference in anoth... by BP9906 Builder in Splunk Search 05-12-2019 1 4 | 1 | 4 | ||
| Hi, I have the below urls. How can I use the regex to remove the tokens from urls? Looking to remove data between /... by knalla Path Finder in Splunk Search 05-12-2019 0 3 | 0 | 3 | ||
| Hi all, I want to create the correlation search in order to further enhance our current security alert from splunk b... by chrishow Engager in Splunk Search 05-12-2019 0 3 | 0 | 3 | ||
| I have a semicolon separated file that is to be used as a lookup file. How do you parse the file within the transform... by SplunkDank New Member in Splunk Search 05-12-2019 0 5 | 0 | 5 | ||
| Hi team! I want to compare last week with avg last three months. This is my code right now. I need some help pls. ... by christianubeda Path Finder in Splunk Search 05-12-2019 0 0 | 0 | 0 | ||
| Hi all, I am trying to run a map command that will run searches from a lookup one by one as follows : | inputlooku... by astatrial Contributor in Splunk Search 05-12-2019 0 13 | 0 | 13 | ||
| I'm having a problem creating an alert for following scenario: Data source: index=mail sourcetype=pps_messagelog (in... by swaguzari Engager in Splunk Search 05-12-2019 0 3 | 0 | 3 | ||
| hello I am doing the distinct count below in my search | stats dc(host) AS OnlineCount by Code | where Code = "Onl... by jip31 Motivator in Splunk Search 05-12-2019 0 5 | 0 | 5 | ||
| index=av sourcetype=BobsCutRateAV category="BadStuffHappening" | eval date_hour=strftime(_time, "%H") | eval date_w... by williamsmew New Member in Splunk Search 05-11-2019 0 7 | 0 | 7 | ||
| Hello, I have a scheduled search that populates a CSV with data each day, including the current date. Here is an ex... by russell120 Communicator in Splunk Search 05-11-2019 0 4 | 0 | 4 | ||
| Hi All, I have a problem to form the logic for sorting Latest and Previous Data to compare. Looking Field1=Status , ... by keanhong New Member in Splunk Search 05-11-2019 0 7 | 0 | 7 | ||
| If look the below screen shot due to multiple calls in same time some time response takes a while and we need to matc... by lsanthoshbe New Member in Splunk Search 05-11-2019 0 4 | 0 | 4 | ||
| I need to filter searches that has a value of "F*" included per transaction number. The transaction number with my se... by marxsabandana Path Finder in Splunk Search 05-11-2019 0 1 | 0 | 1 | ||
| I have a simple search on a text pad, like this index=text|rex field=_raw "ApplicationRegistry-(?<text>.*)" max_match... by Sukisen1981 Champion in Splunk Search 05-11-2019 0 22 | 0 | 22 | ||
| Here's my query: index="smt_fortigate" host="10.8.12.1" srcintf=mysummitwifi | stats count by devtype What I want t... by summitsplunk Communicator in Splunk Search 05-10-2019 0 5 | 0 | 5 | ||
| I'm using predict, and seeing good results, but I would like to clean up my visualization. What I would like is to s... by nplamondon Communicator in Splunk Search 05-10-2019 0 20 | 0 | 20 | ||
| My data is from the same source but I would like to count the number of times a host appears on the event based on tw... by alc2019 New Member in Splunk Search 05-10-2019 0 6 | 0 | 6 | ||
| Hi, How do I convert two fields (date and time) from a lookup table to _time? I would like to use it to create time... by alc2019 New Member in Splunk Search 05-10-2019 0 5 | 0 | 5 | ||
| Here is what I have: ...a log table with a unique FName-LName & Job-Title. I pulled 100 rows on both yesterday and ... by timothytruax Explorer in Splunk Search 05-10-2019 0 6 | 0 | 6 |