Splunk Search

Splunk Search
Community Activity
nick405060
Hi there, | eval session_length=tostring(end-start,"duration") is not padding zeros correctly (I believe just for se...
by nick405060 Motivator in Splunk Search 04-10-2019
0 5
0
5
xisura
Hi Ninjas! Need a little help here. I'm experiencing an error "Search process did not exit cleanly, exit_code=255, d...
by xisura Communicator in Splunk Search 04-10-2019
0 5
0
5
PvandenHondel
As we have an issue to give insights into the ingested data in our Splunk platform towards our compliance officer, we...
by PvandenHondel Explorer in Splunk Search 04-10-2019
0 0
0
0
dgriffioen
Hi, I have 2 indexes. measurements - list of all measurements ( _time, transactionId, transTime, resultStatus) ...
by dgriffioen Engager in Splunk Search 04-10-2019
0 3
0
3
kashz
Hi, So, I have an issue when I try to lookup KV store to columns in a data model based on a eval function. So to giv...
by kashz Explorer in Splunk Search 04-10-2019
0 0
0
0
zd00191
I know there area a bunch of questions about table cell highlighting out there. I have looked at all of them and have...
by zd00191 Communicator in Splunk Search 04-10-2019
0 8
0
8
aadya1985
Hi, I am trying to create a table for data values in the list but I am able to get the first one only. The query I am...
by aadya1985 Loves-to-Learn in Splunk Search 04-10-2019
0 2
0
2
HattrickNZ
i have this search which gives me: ... | stats max(field1) as foo max(field2) as bar max(field3) as la by subname2 w...
by HattrickNZ Motivator in Splunk Search 04-10-2019
4 6
4
6
luckyman80
Hi Experts! So I have an issue with GC cycles and we have this logged in splunk. I have used ...
by luckyman80 Path Finder in Splunk Search 04-10-2019
0 4
0
4
vijaydeveloper1
Hi, Is there any option through I can able to create my own search engine like Google through we can find the best so...
by vijaydeveloper1 New Member in Splunk Search 04-10-2019
0 1
0
1
vickycoder27
We have some below Regex patterns that have special characters, alphabets & digits and wanted them as a showing up as...
by vickycoder27 Explorer in Splunk Search 04-10-2019
0 3
0
3
srteclesmayer
Hi, I'm getting a trouble with this situation. I have two searches: From the first one i get host and auid: index=...
by srteclesmayer New Member in Splunk Search 04-10-2019
0 2
0
2
bravecarcass86
I am trying to create a search that will display all universal forwarders that have not checked in for over 24 hours....
by bravecarcass86 Engager in Splunk Search 04-10-2019
0 2
0
2
jacqu3sy
Hi, Can I use multiple field values to substitute a blank value? Currently have; | eval final_destination = if(des...
by jacqu3sy Path Finder in Splunk Search 04-10-2019
0 2
0
2
wailoont
Hi Splunk, I am in trying to create an alert that will send email to users if the search query returned results if t...
by wailoont Engager in Splunk Search 04-10-2019
0 1
0
1
splunkclarium
How do i compare two different fields , with the same name, from two different sourcetypes? I am trying to check one...
by splunkclarium New Member in Splunk Search 04-09-2019
0 1
0
1
sangs8788
Hi I have below query which gives me TOP 20 Requests based on REQUEST_COST regardless of the RequestType | search ...
by sangs8788 Communicator in Splunk Search 04-09-2019
0 2
0
2
Shashank_87
Hi, I have few events in splunk like these - 1. "GET /test/materials/components/fields HTTP/1.1" 2. "GET /test1 HTTP...
by Shashank_87 Explorer in Splunk Search 04-09-2019
0 6
0
6
sn_18
I need to extract the date from my filename "abc_20190401" and put it as a title in my dashboard?
by sn_18 New Member in Splunk Search 04-09-2019
0 3
0
3
krdo
I have a dashboard similar to this one: <form> <label>Multiple Base Searches</label> <fieldset submitButton="fal...
by krdo Communicator in Splunk Search 04-09-2019
2 4
2
4
awesterman
I have been trying to see if (sprints==last_chunk) but my problem is that, if I eval within the stats section, sprint...
by awesterman New Member in Splunk Search 04-09-2019
0 2
0
2
julmarqu
I am creating a table by appending the result of many searches together so each result appears in one row of the tabl...
by julmarqu Engager in Splunk Search 04-09-2019
1 2
1
2
tmtcollins
I am pretty new to Splunk and this is my first posted question so here goes... I have an application and I need to i...
by tmtcollins Explorer in Splunk Search 04-09-2019
0 1
0
1
salighie
I created a new Index for syslogservers to store remote syslog messages coming in on a Data Input UDP:514; The inde...
by salighie New Member in Splunk Search 04-09-2019
0 6
0
6
jkrehrer22
I have this data: cfjbht06,08-Apr-2019,18:01:47,2.9,11.6 Splunk is reading this timestamp as: 4/8/19 6:01:47.200 P...
by jkrehrer22 Engager in Splunk Search 04-09-2019
0 1
0
1
Get Updates on the Splunk Community!

Self-Healing Pipeline Is Now Generally Available: AI-Powered CIM Compliance

Maintaining data integrity across security and analytics pipelines is an ongoing challenge. Data ...

[Puzzles] Solve, Learn, Repeat: Family Trees

This puzzle (first published here is based on finding grandparents and grandchildren (inspired by a question ...

Break the Build: Inside the KubeDoom Lounge at .conf26

    You step up to the machine. The pixelated corridors of a certain 1993 FPS load in front of you, EMP Pulse ...