Splunk Search

Splunk Search
Community Activity
su_kumar
Hi, I am facing an issue in writing a query. Example: Let's assume I have 2 groups such as : 1)Group 1 has user...
by su_kumar New Member in Splunk Search 03-24-2019
0 1
0
1
rashid47010
I have a list of subnets that I want to exlude from search. below isthe search | search NOT cidrmatch("xx.xx....
by rashid47010 Communicator in Splunk Search 03-24-2019
0 1
0
1
ddrillic
Sorry, but I don't understand how ttl is used and the reason for this design paradigm. Any ideas?
by ddrillic Ultra Champion in Splunk Search 03-23-2019
0 10
0
10
masakatsu
I would like to send search result from my report schedule to my API via webhook. We were able to retrieve one search...
by masakatsu Engager in Splunk Search 03-23-2019
1 1
1
1
cpboothe
Hi, I want to get a count on tickets with the latest status of "In Progress". An example of the data set is below: ...
by cpboothe New Member in Splunk Search 03-23-2019
0 2
0
2
mpasha
Hi, i am running a search that will look for failed authentication attempts of a user within a 1 minute window and ge...
by mpasha Path Finder in Splunk Search 03-22-2019
0 0
0
0
ankithreddy777
I need to create a scripted input in inputs.conf that runs scripts by passing arguments at an interval of 60 secs. B...
by ankithreddy777 Contributor in Splunk Search 03-22-2019
0 3
0
3
jwhughes58
Hi, I have this data {"quarantineFolder": null, "spamScore": 100, "threatsInfoMap": [{"campaignID": null, "threat":...
by jwhughes58 Contributor in Splunk Search 03-22-2019
0 1
0
1
braicu
Hello, Can anybody help me extracting from this table with 3 regular expression: I got a column in Splunk like this...
by braicu New Member in Splunk Search 03-22-2019
0 2
0
2
ddecker03
Looking for assistance to search Bro/Zeek for peaks/dips in traffic (what is the best sourcetype to go by). Also ...
by ddecker03 Loves-to-Learn Everything in Splunk Search 03-22-2019
0 0
0
0
shaileshmali
There seems to be some issue with the strptime function. I'm not sure why it works for few days and does not work for...
by shaileshmali Path Finder in Splunk Search 03-22-2019
0 1
0
1
jjezusek
Hello, I was wondering if you can have a chart that compares the average of one field depending on the value of sever...
by jjezusek Engager in Splunk Search 03-22-2019
0 2
0
2
rockts89
Hi all How to extract id from String using rex? sample: sample-3456-777-text result: id 3456-777
by rockts89 Engager in Splunk Search 03-22-2019
0 2
0
2
evelandi
Hello folks, i have a list of hardware for an account X and i want to know if all the hawrdware list is present in o...
by evelandi New Member in Splunk Search 03-22-2019
0 2
0
2
halbeisendv
User has the "admin" RBAC role User uses dark theme User uses several workstations with Chrome and IE A simple searc...
by halbeisendv Path Finder in Splunk Search 03-22-2019
0 2
0
2
N92
Hi, How we can distinguish windows/linux logs from the AWS logs. Is there any TA/App is available which support by s...
by N92 Path Finder in Splunk Search 03-22-2019
0 2
0
2
splunkLPN
tim:2019-01-18 10:27:54,id:bee236 tim:2019-01-18 10:38:07,id:bee236 tim:2019-01-21 09:27:09,id:thierry403 tim:2019-01...
by splunkLPN Path Finder in Splunk Search 03-22-2019
0 2
0
2
cdhippen
If I have two searches, one generates fields "key A" and "Column A" and the second search generates fields "key B" "C...
by cdhippen Path Finder in Splunk Search 03-22-2019
0 4
0
4
HeinzWaescher
Hi, I would like to create a timechart that shows the running total revenues for each product. First I've created a ...
by HeinzWaescher Motivator in Splunk Search 03-22-2019
1 5
1
5
gowtham495
i have lookup like following : ID jobname start_time end_time frequency 1 abc 0:00 21:00 ...
by gowtham495 Path Finder in Splunk Search 03-22-2019
0 1
0
1
imurpalvicky
Hi Team, I am trying to get the latest event from the list of events , id field is common across all the ...
by imurpalvicky Engager in Splunk Search 03-22-2019
0 8
0
8
virtuosoo
Hello community, I am facing a problem ,I have an instance of splunk installed on linux server , And I am trying to ...
by virtuosoo Explorer in Splunk Search 03-22-2019
0 6
0
6
jyab6z
This is my search: Function="- Parts::GetPartSection =>" | rex "maingroupNo\>(?.+)\\(?.+)\\(?.+)\" | convert timefor...
by jyab6z Path Finder in Splunk Search 03-22-2019
0 2
0
2
preacher_15
hello all, I want to add field values of a table with field values of another table in a dashboard both belonging to ...
by preacher_15 Explorer in Splunk Search 03-22-2019
0 1
0
1
mdmaala
hi!I have a prototype here that has three switches for each light, Green, Yellow and Red Light respective. Each time ...
by mdmaala Communicator in Splunk Search 03-21-2019
0 1
0
1
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Matching cron expressions

This puzzle (first published here) is based on matching timestamps to cron expressions.All the timestamps ...

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

Data Management Digest – May 2026

Welcome to the May 2026 edition of Data Management Digest!   As your trusted partner in data innovation, the ...