Splunk Search

Splunk Search
Community Activity
russell120
Here's an example of my CSV with 10s of thousand of rows: device ID phone [APPLE]1234 phone [ANDROID]0987 pho...
by russell120 Communicator in Splunk Search 05-09-2019
0 2
0
2
nathig
Why is this search not returning the iplocation of the ip addresses. It is not the most efficient search, but right n...
by nathig Explorer in Splunk Search 05-09-2019
0 3
0
3
jip31
hello when i execute the search below I have no results index="tutu" sourcetype="perfmon:logicaldisk" instance="...
by jip31 Motivator in Splunk Search 05-09-2019
0 2
0
2
joesecurity
I load JSON reports into Splunk and those reports have many arrays: { "analysis":{ "behavior":{ ...
by joesecurity Engager in Splunk Search 05-09-2019
0 15
0
15
net1993
Hello What options there are to tune search from already accelerated data model with 3+tb data? the slowliness comes...
by net1993 Path Finder in Splunk Search 05-09-2019
0 0
0
0
willemjongeneel
Hello, I receive errors like the ones below: LineBreakingProcessor - Truncating line because limit of 132000 bytes h...
by willemjongeneel Communicator in Splunk Search 05-09-2019
0 4
0
4
sajjanshetty15
hello all, I am trying to merge the rows of table into one value as all of them are same, but i dont want to use dedu...
by sajjanshetty15 Loves-to-Learn in Splunk Search 05-09-2019
0 0
0
0
smiththebest
mySearch | table * generates nice table of all my ~150 fields with default field names field1 field2... field10... f...
by smiththebest New Member in Splunk Search 05-08-2019
0 1
0
1
NAVEEN_CTS
Hi , I have dns file where i need to filter the junk data before indexing and extract hostname and IP fields at inde...
by NAVEEN_CTS Path Finder in Splunk Search 05-08-2019
0 5
0
5
leejaeyong
For all row, how can i make splunk query following 'for loop'? for(i=1, i<100, i=i+1) { factor1_prev=factor1_mi...
by leejaeyong Engager in Splunk Search 05-08-2019
0 2
0
2
rajyah
Good day! Can you please enlighten me about what system resource does each instance mostly use ? Indexer: Dedicated...
by rajyah Communicator in Splunk Search 05-08-2019
0 0
0
0
moizmmz
Hello, In the following query, I'm hoping to return the value 0 to my dashboard panel if no results are found by the...
by moizmmz Path Finder in Splunk Search 05-08-2019
0 10
0
10
draracle
Currently I am extracting the URL and reverse IP address (D.C.B.A) from a DNS-related event. I would like to capture...
by draracle Engager in Splunk Search 05-08-2019
0 6
0
6
maryamchar
I want to create a table with all fields from two different indexes. Index=A |rename fieldA as field1 |table field1...
by maryamchar Explorer in Splunk Search 05-08-2019
0 9
0
9
Prakash493
Hi Currently we have Splunk db connect installed on heavy forwarder and we have inputs configured on heavy forwarder ...
by Prakash493 Communicator in Splunk Search 05-08-2019
0 2
0
2
anholzer
I am attempting to create a search that returns data for a different time-range based on the current day of the week....
by anholzer Explorer in Splunk Search 05-08-2019
0 2
0
2
triest
Does anyone know a way to control the field order for the format command? For the default use case of format it AND'...
by triest Communicator in Splunk Search 05-08-2019
0 5
0
5
arpitpropay
I have several log files as source of Splunk events. C:\logs\Srv1\file1_2019-05-06.log C:\logs\Srv84\file3_2019-05-...
by arpitpropay Explorer in Splunk Search 05-08-2019
0 4
0
4
huibertsp
I like to run PowerShell scripts under "Powershell v3 Modular Input" and created a script. I noticed via our HIPS blo...
by huibertsp Engager in Splunk Search 05-08-2019
0 0
0
0
mikaellindstrom
Hi, I'm having a problem with setting up my data stream for scripted input. I have the splunk universal forwarder set...
by mikaellindstrom New Member in Splunk Search 05-08-2019
0 0
0
0
ryhluc01
Good Morning, I need to do a stat avg on the time difference between results. Problem is all of my fields are both ...
by ryhluc01 Communicator in Splunk Search 05-08-2019
0 4
0
4
Shashank_87
Hi, I am looking for some help related to one of the issues. So what i want is weekly view of users in last 90 days w...
by Shashank_87 Explorer in Splunk Search 05-08-2019
0 1
0
1
su_kumar
Hi, I am using the stats command with the list() function. , i am getting below error. Error : 'stats' command: lim...
by su_kumar New Member in Splunk Search 05-08-2019
0 12
0
12
jwalzerpitt
I have some ADFS logs that I'm trying to pull the IPs from. My regex is as follows: (?:(^Token\sType):\s*(?:\n(?!Cli...
by jwalzerpitt Influencer in Splunk Search 05-08-2019
0 5
0
5
ryanisibor
I receive a weekly report on terminated users and I’m trying to create a search that will identify events/domain acti...
by ryanisibor Engager in Splunk Search 05-08-2019
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...