Splunk Search

Splunk Search
Community Activity
Shashank_87
Hi, I want to calculate the Java threads on my 4 application servers. I have one query but i believe that gives all t...
by Shashank_87 Explorer in Splunk Search 04-15-2019
0 2
0
2
rajkumarsowmy
{<!-- --> "timestamp": "2019-04-11T16:44:45.497462", "payload": {<!-- --> "KEY_CHK_DCN_NBR": "19054", "recommendations": ...
by rajkumarsowmy New Member in Splunk Search 04-15-2019
0 2
0
2
cpressl
I have an index that lists (among other things) a device, event date, and level (1-4). Devices change levels at rando...
by cpressl New Member in Splunk Search 04-15-2019
0 0
0
0
msarro
For some reason the following isn't working: index&#61;"sandbox" sourcetype&#61;"as-cdr" |stats count AS numCalls |append [s...
by msarro Builder in Splunk Search 04-15-2019
0 5
0
5
matt
What's the best way to create a search to identify which hosts have not sent a syslog message to Splunk in the last 2...
by matt Splunk Employee Splunk Employee in Splunk Search 04-15-2019
2 10
2
10
johnsasikumar
Hi I have 10 different Splunk queries that return results only when there is an issue or a flag of 1. All the queries...
by johnsasikumar Path Finder in Splunk Search 04-15-2019
0 1
0
1
AKG1_old1
Hi, I am looking to sort column with specific condition. Condition: if column Context_Command contains * it should...
by AKG1_old1 Builder in Splunk Search 04-15-2019
1 2
1
2
kannu
Hello Guys , I am having results from two different query 1&gt; index&#61;_internal ("version" AND source&#61;"/opt/splunk/va...
by kannu Communicator in Splunk Search 04-15-2019
0 10
0
10
lbkAconectodk
I want to output computers who only has started 1 specific application Field values: Application &#43; Computers There i...
by lbkAconectodk New Member in Splunk Search 04-15-2019
0 7
0
7
jip31
Hello I use the search below it works fine..... BUT for some host, I cant catch the fields there is in the subsearch...
by jip31 Motivator in Splunk Search 04-14-2019
0 7
0
7
wailoont
Hi, I have a search query as below. query | stats list(repo_name) by user_login This returns username with their ...
by wailoont Engager in Splunk Search 04-14-2019
0 2
0
2
nick405060
Hi there, I need to disable drilldown on certain columns. Unlike the answer given here... https://answers.splunk.co...
by nick405060 Motivator in Splunk Search 04-14-2019
1 8
1
8
thefuzz4
So I have HomeAssistant installed and I'm sending all of the events off to my splunk server. I recently had my attic...
by thefuzz4 Path Finder in Splunk Search 04-13-2019
0 2
0
2
fred1455
Given the search stats count by Name, Fruit results in: Name, Fruit, count Mike, Bananas, 10 Mike, Apples, 10 Sus...
by fred1455 New Member in Splunk Search 04-13-2019
0 4
0
4
vbantug
Hi, I would like to update a lookup file with, for an example 10 new information, through Splunk Search only. The ...
by vbantug New Member in Splunk Search 04-13-2019
0 2
0
2
brienhawker
I have two fields se_split and re_split which are lined up like so re_split se_split a ...
by brienhawker Explorer in Splunk Search 04-13-2019
1 10
1
10
proylea
Hi Splunkers I have a set of results from using set diff which is all good. I am now wanting to output another field...
by proylea Contributor in Splunk Search 04-13-2019
0 20
0
20
darrenaefc
Hi guys, I am very new to Splunk (about 1 month or so) and I am having some trouble incorporating "set diff" into my...
by darrenaefc Engager in Splunk Search 04-13-2019
0 8
0
8
smiththebest
Have a log file that has http response codes in a particular field. I am doing timechart on it but as the 200 respons...
by smiththebest New Member in Splunk Search 04-13-2019
0 2
0
2
sangs8788
Hi, I have two queries with one field being common to correlate and combine the result. But the problem i am facing ...
by sangs8788 Communicator in Splunk Search 04-13-2019
0 5
0
5
vn86893
Hello Team, I am facing this issue where my logs are written in EST and the time stamp on the log is UST ( Lets say...
by vn86893 Explorer in Splunk Search 04-12-2019
0 2
0
2
mariraj
The input data looks like below. Req_no|Type|Time 1000|Request|2019-04-10T11.21.46.455Z 1000|Response|2019-04-10T11....
by mariraj New Member in Splunk Search 04-12-2019
0 2
0
2
rjfv8205
Hello splunkers, I have this search: index &#61; "sti" sourcetype &#61; "Genera_AVI" | fields _time | head 1 | eval tiempo &#61;...
by rjfv8205 Path Finder in Splunk Search 04-12-2019
0 3
0
3
rafiqul
I wanted to extract MAC address from events that were never succeeded within a time boundary. I am dealing with event...
by rafiqul New Member in Splunk Search 04-12-2019
0 1
0
1
snallam123
Hello splunkers, I have two different indexes with large number of IP's. Let's say 30k in one index A and &gt;100k in o...
by snallam123 Path Finder in Splunk Search 04-12-2019
0 6
0
6
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

Data Management Digest – May 2026

Welcome to the May 2026 edition of Data Management Digest!   As your trusted partner in data innovation, the ...