Splunk Search

Splunk Search
Community Activity
Santosh2
index=test-index (data loaded) OR ("GET data published/data/ui" OR "GET /v8/wi/data/*" OR "GET data/ui/wi/load/succes...
by Santosh2 Path Finder in Splunk Search 04-11-2024
0 6
0
6
Miguel3393
Hello,I have these two results, I need to compare them and tell me when they are different, could you help me.Regards...
by Miguel3393 Path Finder in Splunk Search 04-10-2024
0 1
0
1
Real_captain
Hi Team I want to know if it is possible to find the count of specific fields and show them in different columns.Exam...
by Real_captain Path Finder in Splunk Search 04-10-2024
0 2
0
2
scout29
I am trying to join two searches together to table the combined results by host. First search below is showing number...
by scout29 Path Finder in Splunk Search 04-10-2024
0 7
0
7
karthi2809
Thanks in AdvanceHi Guys,I need to extract limited values from fields:Query :index="mulesoft" applicationName="s-conc...
by karthi2809 Builder in Splunk Search 04-10-2024
1 15
1
15
jaibalaraman
Hi I am not sure about this value risk score. How do i create dashboard tile for this fields 
by jaibalaraman Path Finder in Splunk Search 04-09-2024
0 8
0
8
CarolinaHB
Good Morning, I'm working in a query to see which application is missing on each host. Can you help me, please?For ex...
by CarolinaHB Explorer in Splunk Search 04-09-2024
0 1
0
1
psomeshwar
Currently, I have a field called pluginText which is the following (italicized words are anonymized to what they repr...
by psomeshwar Path Finder in Splunk Search 04-09-2024
0 3
0
3
whipstash
I am trying to find the duration for a time span. The "in" and "out" numbers are included in the data as type: number...
by whipstash Engager in Splunk Search 04-09-2024
0 3
0
3
BigJohnQ
Hi all, thank in advance for your time!I have a problem writing a properly working query with this case study:I need ...
by BigJohnQ New Member in Splunk Search 04-09-2024
0 4
0
4
jbuecse
We have several summary searches that collect data into metric indexes. They run nightly and some of them create quit...
by jbuecse New Member in Splunk Search 04-08-2024
0 1
0
1
avii7326
Hi All,I have one log that is ABC and it is present in sl-sfdc api and have another log EFG that is present in sl-gcd...
by avii7326 New Member in Splunk Search 04-08-2024
0 4
0
4
Jasmine
i am using below to load colur in drop downlist . Data loading propertly. but it always shows - Could not create sear...
by Jasmine Path Finder in Splunk Search 04-08-2024
0 3
0
3
matoulas
Data Summary is not showing host at all even I already added UDP with ip address on port 514.
by matoulas Path Finder in Splunk Search 04-08-2024
0 1
0
1
alexspunkshell
Below are the CIM Macros where i am using and there are different indexes mapped in individual macros.I want to get t...
by alexspunkshell Contributor in Splunk Search 04-08-2024
0 1
0
1
EG1
Hi,I have this search for example:index=test elb_status_code=200  | timechart count as total span=1s | stats count as...
by EG1 Engager in Splunk Search 04-08-2024
0 4
0
4
KingUs80
I'm looking to craft a query  (a correlation search) that would trigger an alert in the event that an internal system...
by KingUs80 Loves-to-Learn Lots in Splunk Search 04-07-2024
0 1
0
1
simon007
I am using the | fields _raw to show the entire content of the source file as a single event.  It works for most of m...
by simon007 Observer in Splunk Search 04-06-2024
0 1
0
1
kranthimutyala2
curl -k -u svc_aas -d search="search index=aas sourcetype=syslog" https://splunk-prod-api.internal.xxxx.com/services/...
by kranthimutyala2 Engager in Splunk Search 04-06-2024
0 2
0
2
aiguofer
I've written a search that creates a stats table with a medium sized result with around 5 cols and 100k+ rows. When I...
by aiguofer Engager in Splunk Search 04-05-2024
1 4
1
4
jiaqya
Hi, need help to get difference records between 2 lookups with same column name. ex: lookup 1 has the data below: co...
by jiaqya Builder in Splunk Search 04-05-2024
0 5
0
5
avi123
Hi All,I have time field having time range in this format in output of one splunk query:TeamWorkTimings09:00:00-18:00...
by avi123 Explorer in Splunk Search 04-05-2024
0 3
0
3
kriptonpt
Hi  Assuming a sample of data from this example:    | makeresults count=5 | eval f1=random()%2 | eval f2=random()%2 |...
by kriptonpt Engager in Splunk Search 04-05-2024
0 5
0
5
karthi2809
Hi Guys,In my scenario i need show error details for correlation id .There are field called tracePoint="EXCEPTION" an...
by karthi2809 Builder in Splunk Search 04-05-2024
0 4
0
4
bhaskar5428
My apologiesi was using "eventTimestamp" instead of  "@timestamp" in my rex command i just realized and its working n...
by bhaskar5428 Explorer in Splunk Search 04-05-2024
0 5
0
5
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...