Splunk Search

Splunk Search
Community Activity
vickycoder27
We have some below Regex patterns that have special characters, alphabets & digits and wanted them as a showing up as...
by vickycoder27 Explorer in Splunk Search 04-10-2019
0 3
0
3
srteclesmayer
Hi, I'm getting a trouble with this situation. I have two searches: From the first one i get host and auid: index=...
by srteclesmayer New Member in Splunk Search 04-10-2019
0 2
0
2
bravecarcass86
I am trying to create a search that will display all universal forwarders that have not checked in for over 24 hours....
by bravecarcass86 Engager in Splunk Search 04-10-2019
0 2
0
2
jacqu3sy
Hi, Can I use multiple field values to substitute a blank value? Currently have; | eval final_destination = if(des...
by jacqu3sy Path Finder in Splunk Search 04-10-2019
0 2
0
2
wailoont
Hi Splunk, I am in trying to create an alert that will send email to users if the search query returned results if t...
by wailoont Engager in Splunk Search 04-10-2019
0 1
0
1
splunkclarium
How do i compare two different fields , with the same name, from two different sourcetypes? I am trying to check one...
by splunkclarium New Member in Splunk Search 04-09-2019
0 1
0
1
sangs8788
Hi I have below query which gives me TOP 20 Requests based on REQUEST_COST regardless of the RequestType | search ...
by sangs8788 Communicator in Splunk Search 04-09-2019
0 2
0
2
Shashank_87
Hi, I have few events in splunk like these - 1. "GET /test/materials/components/fields HTTP/1.1" 2. "GET /test1 HTTP...
by Shashank_87 Explorer in Splunk Search 04-09-2019
0 6
0
6
sn_18
I need to extract the date from my filename "abc_20190401" and put it as a title in my dashboard?
by sn_18 New Member in Splunk Search 04-09-2019
0 3
0
3
krdo
I have a dashboard similar to this one: <form> <label>Multiple Base Searches</label> <fieldset submitButton="fal...
by krdo Communicator in Splunk Search 04-09-2019
2 4
2
4
awesterman
I have been trying to see if (sprints==last_chunk) but my problem is that, if I eval within the stats section, sprint...
by awesterman New Member in Splunk Search 04-09-2019
0 2
0
2
julmarqu
I am creating a table by appending the result of many searches together so each result appears in one row of the tabl...
by julmarqu Engager in Splunk Search 04-09-2019
1 2
1
2
tmtcollins
I am pretty new to Splunk and this is my first posted question so here goes... I have an application and I need to i...
by tmtcollins Explorer in Splunk Search 04-09-2019
0 1
0
1
salighie
I created a new Index for syslogservers to store remote syslog messages coming in on a Data Input UDP:514; The inde...
by salighie New Member in Splunk Search 04-09-2019
0 6
0
6
jkrehrer22
I have this data: cfjbht06,08-Apr-2019,18:01:47,2.9,11.6 Splunk is reading this timestamp as: 4/8/19 6:01:47.200 P...
by jkrehrer22 Engager in Splunk Search 04-09-2019
0 1
0
1
jedatt01
I have a transform that I need help writing a regex for. It has two conditions. It needs to match the value in this...
by jedatt01 Builder in Splunk Search 04-09-2019
1 10
1
10
seomaniv
So I have a single log event that captures the request and the response JSONs. As a user I'd like to be able to write...
by seomaniv Explorer in Splunk Search 04-09-2019
0 3
0
3
ashish_chand
i have a file in the format of : productId,product_name,price,sale_price,Code DB-SG-G01,Mediocre Kingdoms,24.99,19.9...
by ashish_chand New Member in Splunk Search 04-09-2019
0 3
0
3
grundsch
Hi, I stumbled on something funny with the time conversion functions. Trying to convert the 1st of January 1970 to ep...
by grundsch Communicator in Splunk Search 04-09-2019
1 3
1
3
minaljain
I have logs in splunk as mentioned below 3/22/19 2:05:44.000 PM Date = 2019-03-22 13:58:19,827 | Level = INFO | Req...
by minaljain New Member in Splunk Search 04-09-2019
0 1
0
1
ID_SplunkUser
I have a requirement in which I don't want to display the last bucket of data in the timechart. Example: The bucket t...
by ID_SplunkUser Path Finder in Splunk Search 04-09-2019
1 5
1
5
ktn01
Hello, I have a dashboard with 2 inputs: A radio input with two buttons, index and role, with the token viewText inp...
by ktn01 Path Finder in Splunk Search 04-09-2019
0 1
0
1
jip31
Hello I have the panel below in my dashboard <row> <panel> <single> <search> <query>| i...
by jip31 Motivator in Splunk Search 04-09-2019
0 2
0
2
christoffertoft
I have a kv store that has several fields (ip addresses, time stamps etc) tied to a unique key (the default mode) - w...
by christoffertoft Communicator in Splunk Search 04-09-2019
0 7
0
7
may_aaron
I have TA-tippingpoint 3.3.0 app installed on Enterprise Splunk 6.2.4, but there are no field extractions for the IPS...
by may_aaron Engager in Splunk Search 04-09-2019
1 6
1
6
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...