Splunk Search

Splunk Search
Community Activity
HustenHelmut334
This is not working: Is there a special syntax to use the content of a variable an not its name? sourcetype="test" |...
by HustenHelmut334 New Member in Splunk Search 04-18-2019
0 2
0
2
anasshsa
Hello, I Need to know how can I trim a string from the begining until a specific character. For example, I have the t...
by anasshsa Engager in Splunk Search 04-17-2019
0 2
0
2
chandlercr
Is there any sort of syntax for me to be able to manipulate or get data on data that exists in the Values() field. S...
by chandlercr New Member in Splunk Search 04-17-2019
0 1
0
1
mjones414
I've got a test set of hosts using collectd to gather process information, and I'm struggling how to get mstats to gi...
by mjones414 Contributor in Splunk Search 04-17-2019
0 0
0
0
clozach
My goals is to grab the computer name from the multi-value field: identities. I then want to take that new attribute ...
by clozach Path Finder in Splunk Search 04-17-2019
0 1
0
1
evelenke
Hi Splunkers, we have JSON logs with multiple values for a single field - list of identities - up to 1000. I need ...
by evelenke Contributor in Splunk Search 04-17-2019
0 0
0
0
VanyBerg
Dear Community, I got a use case I seem to be too inexperienced with to complete on my own. Since I just started del...
by VanyBerg Engager in Splunk Search 04-17-2019
0 1
0
1
jip31
hello I use the search below in order to display cpu using is > to 80% by host and by process-name So a same host ca...
by jip31 Motivator in Splunk Search 04-17-2019
0 4
0
4
LHisham
I am fairly new to Splunk so bear with me. I have extracted two fields and they are ConnectTime and DisconnectTime a...
by LHisham Engager in Splunk Search 04-17-2019
1 3
1
3
jip31
hi I have diffuclties to understand how inputlookup works I use the search below index="x" sourcetype=y source="...
by jip31 Motivator in Splunk Search 04-17-2019
0 10
0
10
ddrillic
One of our customers wonders whether it's possible to change an index name. Is it possible?
by ddrillic Ultra Champion in Splunk Search 04-17-2019
0 2
0
2
wingstopdgon
I am trying to search event logs for an event when a user password is set to not expire. But the alert I have setu...
by wingstopdgon New Member in Splunk Search 04-17-2019
0 1
0
1
anasshsa
I Need to know to subtract a string from the begining of a value until a specific character in Spl. For example, if I...
by anasshsa Engager in Splunk Search 04-17-2019
0 1
0
1
adamcoquim
Hi, Essentially, I am trying to join 2 or 3 log entries together linking them by a yet to be determined value (sessi...
by adamcoquim Explorer in Splunk Search 04-17-2019
0 2
0
2
damucka
Hello, I have the following inputs.conf on my indexer: [default] host = mo-7ee963859.zone1.mo.sap.corp [monitor://...
by damucka Builder in Splunk Search 04-17-2019
0 2
0
2
rakesh44
Hi Friends, I have two field component and eventtype, need count of component=root and component=Metrics and ventt...
by rakesh44 Communicator in Splunk Search 04-17-2019
0 9
0
9
reswob4
I have a file that I am monitoring on a Heavy Forwarder(HF). The file is JSON logs. On the HF I have the following pr...
by reswob4 Builder in Splunk Search 04-17-2019
0 8
0
8
hexerino
Currently I have a search as follows: myFieldName="mySearchValue" | where match(path,`startOfPath`) `startOfPath` ex...
by hexerino Explorer in Splunk Search 04-17-2019
0 2
0
2
johnsasikumar
Is there a way in splunk to have a table updated only when the query returns results. For Instance if there 50 index...
by johnsasikumar Path Finder in Splunk Search 04-16-2019
0 0
0
0
daluoc
when I start splunk it shows me his " Checking conf files for problems... Bad regex value: '(...
by daluoc New Member in Splunk Search 04-16-2019
0 2
0
2
jip31
hello I try to calculate a percentage from 2 searches results I know how to count results from my first search : in...
by jip31 Motivator in Splunk Search 04-16-2019
0 2
0
2
michaelrosello
Is there a way to use mvexpand on multitple values? This is the result of my current search and I want it to look li...
by michaelrosello Path Finder in Splunk Search 04-16-2019
1 5
1
5
BearMormont
Hello! Take for example the following query: | makeresults | eval somevalue=" Hello World!" | table someval...
by BearMormont Path Finder in Splunk Search 04-16-2019
0 3
0
3
christopheryu
I have a search that calculates latency in a full-mesh network, where each router has a direct connection to all of t...
by christopheryu Communicator in Splunk Search 04-16-2019
1 6
1
6
MikeBertelsen
I received an email from ES techs that someone had sent over 128k alerts to the same address in a 24 hour period. I t...
by MikeBertelsen Communicator in Splunk Search 04-16-2019
0 1
0
1
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Solution Authors