Splunk Search

Splunk Search
Community Activity
gumarovv
There are multiple events with 1 same field - unique_session, how to combine and count events from that unique sessio...
by gumarovv New Member in Splunk Search 04-15-2019
0 6
0
6
akarunkumar321
Hi, I Have a table-1 with tracking IDs ex: 123, 456, 789 and the other query which returns a table-2 with tracking ...
by akarunkumar321 Engager in Splunk Search 04-15-2019
0 19
0
19
splunkbacon
I have read about some limits you can come across when doing realtime searches. When trying to scale this out shoul...
by splunkbacon Explorer in Splunk Search 04-15-2019
0 3
0
3
x213217
I have this search that will display the following index=autosys source= jobName= | where statusText="SUCCESS" OR st...
by x213217 Explorer in Splunk Search 04-15-2019
0 3
0
3
ddrillic
We created a lookup via the outputlookup command and we can see the file under $SPLUNK_HOME/etc/apps/<app name>/looku...
by ddrillic Ultra Champion in Splunk Search 04-15-2019
0 1
0
1
splunkuseradmin
Hi everyone, I have 40 source type with different names so I was wondering if i can extract sourcetype using rex. a...
by splunkuseradmin Path Finder in Splunk Search 04-15-2019
1 1
1
1
donemery
I am using regex slot and port information. Here is an example of the syslog output: Slot1 : OLTPort2 Is it possib...
by donemery Explorer in Splunk Search 04-15-2019
0 7
0
7
sudheeraha
Hi there, I have below result with this query. index="abc" Properties.CorrelationId != XYZ | stats count by Prope...
by sudheeraha Engager in Splunk Search 04-15-2019
0 3
0
3
Lowell
Anyone have any thoughts as to how to reorder a multi-valued field? Ideally I'd like to be able to do a "sort" or in...
by Lowell Super Champion in Splunk Search 04-15-2019
4 5
4
5
pench2k19
Hi Team, I m planning to collect the highlited text from the raw data as below info : Detailed logging to /apps/dat...
by pench2k19 Explorer in Splunk Search 04-15-2019
0 10
0
10
Shashank_87
Hi, I want to calculate the Java threads on my 4 application servers. I have one query but i believe that gives all t...
by Shashank_87 Explorer in Splunk Search 04-15-2019
0 2
0
2
rajkumarsowmy
{<!-- --> "timestamp": "2019-04-11T16:44:45.497462", "payload": {<!-- --> "KEY_CHK_DCN_NBR": "19054", "recommendations": ...
by rajkumarsowmy New Member in Splunk Search 04-15-2019
0 2
0
2
cpressl
I have an index that lists (among other things) a device, event date, and level (1-4). Devices change levels at rando...
by cpressl New Member in Splunk Search 04-15-2019
0 0
0
0
msarro
For some reason the following isn't working: index&#61;"sandbox" sourcetype&#61;"as-cdr" |stats count AS numCalls |append [s...
by msarro Builder in Splunk Search 04-15-2019
0 5
0
5
matt
What's the best way to create a search to identify which hosts have not sent a syslog message to Splunk in the last 2...
by matt Splunk Employee Splunk Employee in Splunk Search 04-15-2019
2 10
2
10
johnsasikumar
Hi I have 10 different Splunk queries that return results only when there is an issue or a flag of 1. All the queries...
by johnsasikumar Path Finder in Splunk Search 04-15-2019
0 1
0
1
AKG1_old1
Hi, I am looking to sort column with specific condition. Condition: if column Context_Command contains * it should...
by AKG1_old1 Builder in Splunk Search 04-15-2019
1 2
1
2
kannu
Hello Guys , I am having results from two different query 1&gt; index&#61;_internal ("version" AND source&#61;"/opt/splunk/va...
by kannu Communicator in Splunk Search 04-15-2019
0 10
0
10
lbkAconectodk
I want to output computers who only has started 1 specific application Field values: Application &#43; Computers There i...
by lbkAconectodk New Member in Splunk Search 04-15-2019
0 7
0
7
jip31
Hello I use the search below it works fine..... BUT for some host, I cant catch the fields there is in the subsearch...
by jip31 Motivator in Splunk Search 04-14-2019
0 7
0
7
wailoont
Hi, I have a search query as below. query | stats list(repo_name) by user_login This returns username with their ...
by wailoont Engager in Splunk Search 04-14-2019
0 2
0
2
nick405060
Hi there, I need to disable drilldown on certain columns. Unlike the answer given here... https://answers.splunk.co...
by nick405060 Motivator in Splunk Search 04-14-2019
1 8
1
8
thefuzz4
So I have HomeAssistant installed and I'm sending all of the events off to my splunk server. I recently had my attic...
by thefuzz4 Path Finder in Splunk Search 04-13-2019
0 2
0
2
fred1455
Given the search stats count by Name, Fruit results in: Name, Fruit, count Mike, Bananas, 10 Mike, Apples, 10 Sus...
by fred1455 New Member in Splunk Search 04-13-2019
0 4
0
4
vbantug
Hi, I would like to update a lookup file with, for an example 10 new information, through Splunk Search only. The ...
by vbantug New Member in Splunk Search 04-13-2019
0 2
0
2
Get Updates on the Splunk Community!

Value Insights: Now Generally Available in the CMC

Organizations are under pressure to move faster, control cost, expand AI adoption, and prove value with more ...

What’s New in Splunk AI: Volume 02

Welcome to the second edition of “What’s New in Splunk AI” where we look at the latest and greatest updates, ...

Splunk App Dev Quarterly Roundup: AI, Agents, and Innovation!

Another quarter, another wave of innovation. From complex integrations to pushing the limits ...
Top Solution Authors