Splunk Search

Splunk Search
Community Activity
pop345
I am trying to compare an IP address field called ex_ip thats stored in a lookup file with an index called activity w...
by pop345 Loves-to-Learn Lots in Splunk Search 03-25-2024
0 7
0
7
tylermonteith
I seem to be close on trying to find the statistics to be able to pull unique users per day but I know I'm missing so...
by tylermonteith Explorer in Splunk Search 03-25-2024
0 5
0
5
selvaraj4u
Hi, am creation a dashboard using dashboard studio, and i want to run a query with subsearch.i want to use the time f...
by selvaraj4u New Member in Splunk Search 03-25-2024
0 1
0
1
matthewob5
I have a lookup table that looks like this (:Column 1Column 2Column 3Column 4Value 1--15Value 1--60Value 2--75Value 2...
by matthewob5 Engager in Splunk Search 03-25-2024
0 1
0
1
psamuel69
Hello Expert Splunk Community ,I am struggling with a JSON extraction .Need help/advice on how to do this operationDa...
by psamuel69 Explorer in Splunk Search 03-25-2024
0 5
0
5
kutsyy
I know that I can combine multiple metrics using mstats as: | mstats avg(_value) AS "Average" WHERE metric_name=metr...
by kutsyy Engager in Splunk Search 03-24-2024
0 3
0
3
sabari80
I have below query to calculate average response times. For some reason some times the value is coming as '0'. i want...
by sabari80 Explorer in Splunk Search 03-23-2024
0 7
0
7
suvi6789
Hi, I have 4 fields in my index ID, Method, URL, HTTP_responsecodeID is in the form of XXXX-YYYY-ZZZZ-AAAA, Now, I wa...
by suvi6789 Path Finder in Splunk Search 03-23-2024
0 1
0
1
vinod743374
HI,I have a single query to get all types of data in table.for one particular type I have an issue with the null valu...
by vinod743374 Communicator in Splunk Search 03-23-2024
0 2
0
2
psomeshwar
I currently have two different fieldsHost                     DomainF32432KL34    domain.comI wish to combine these i...
by psomeshwar Path Finder in Splunk Search 03-22-2024
0 3
0
3
eranhauser
Hi,my event has unstructured data i.e. few strings than xml part than few more strings and another xml follow by few ...
by eranhauser Path Finder in Splunk Search 03-22-2024
0 5
0
5
HarishSamudrala
I have a strange issue, when i search for specific event in Splunk and I am looking for specific fields( ex field1, f...
by HarishSamudrala Loves-to-Learn in Splunk Search 03-22-2024
0 6
0
6
splunkrush
Trying to figure out how to extract a field using regex to capture the entire string.  Only problem is there are a bu...
by splunkrush Engager in Splunk Search 03-22-2024
0 2
0
2
kmaron
I have a dashboard that is built from 3 different searches. They all come from the same data so I would like to turn...
by kmaron Motivator in Splunk Search 03-22-2024
1 13
1
13
karthi2809
Hi,I am using multiple case conditions but the condition is not matching. In the third line of the code used AND cond...
by karthi2809 Builder in Splunk Search 03-22-2024
0 6
0
6
karthi2809
Hi Guys,I am trying fetch details using stats.In this query I am trying get status from the below conditions and when...
by karthi2809 Builder in Splunk Search 03-22-2024
0 2
0
2
psomeshwar
Currently, I have a table that looks like this:Table1Hostname   Vendor         Product              Version----------...
by psomeshwar Path Finder in Splunk Search 03-22-2024
0 6
0
6
AL3Z
Hi, I need an help with my windows security logs how we can create the lateral movement use case 
by AL3Z Builder in Splunk Search 03-21-2024
0 1
0
1
av_
I am searching some logs in an application for the last 24 hours (or any time range the user has selected). Is it pos...
by av_ Path Finder in Splunk Search 03-21-2024
0 4
0
4
Scharf
Hello world,I'm trying to use rex to rename the part of the strings below where it says "g0" to "GRN". So the output ...
by Scharf Explorer in Splunk Search 03-21-2024
0 5
0
5
Abass42
I have a question regarding how to properly extract the time ranges between the Events to use as a field value for a ...
by Abass42 Communicator in Splunk Search 03-21-2024
0 1
0
1
MJAITEH
I have a use case where I'm trying to collect events from a federated search. I can run and search results using the ...
by MJAITEH Engager in Splunk Search 03-21-2024
1 0
1
0
karthi2809
Hi Guys,I am try to exclude field value . need to exclude message=""API:START: /v1/Journals_outbound"  index="mulesof...
by karthi2809 Builder in Splunk Search 03-21-2024
0 1
0
1
riposans
Hello everyone, i need solution for this.my data :userID=text123 , login_time="2024-03-21 08:04:42.201000", ip_addr=1...
by riposans Explorer in Splunk Search 03-20-2024
0 1
0
1
Amit79
Hello All, Below is my alert script, and I dont want to have any alerts during night 11:50 to 00:25 midnight, however...
by Amit79 Loves-to-Learn Everything in Splunk Search 03-20-2024
0 2
0
2
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...