Splunk Search

Splunk Search
Community Activity
arielpconsolaci
I have the below data and I am trying to display it in a Pie chart that will display the group in a corresponding col...
by arielpconsolaci Path Finder in Splunk Search 03-18-2019
0 4
0
4
AaronMoorcroft
Hey Guys, IS there a simple way to search for a set of commands being ran in quick succession on a single system and...
by AaronMoorcroft Communicator in Splunk Search 03-18-2019
0 2
0
2
johnansett
Hello Splunkers, I need some help with a basic extraction. I have about 8 different styles of logs which have the s...
by johnansett Communicator in Splunk Search 03-18-2019
0 1
0
1
williamcharlton
I have a search that returns a event count total and produces a table ... | eventstats count AS Total | Table foo, b...
by williamcharlton Path Finder in Splunk Search 03-18-2019
0 2
0
2
batuhankutluca
Hello, I have a certain search that returns me many fields with values. Next thing I wanna do is get values of "src_i...
by batuhankutluca Explorer in Splunk Search 03-18-2019
2 4
2
4
pladamsplunk
I have a group of events which has the sourcetype "users" The events within sourcetype=users contain the format: us...
by pladamsplunk Explorer in Splunk Search 03-18-2019
0 2
0
2
shishirkumar
index=wineventlog host=ATLINFPSAS3 sourcetype="WinEventLog:Security" ApolloClientReports NOT "*Symantec Endpoint Pro...
by shishirkumar Engager in Splunk Search 03-18-2019
0 6
0
6
seva98
Hi, I am not sure if I understand how base search is really working as I am having an issue with following code (see...
by seva98 Path Finder in Splunk Search 03-18-2019
0 3
0
3
nareshinsvu
Hi Experts, I want to filter for a line with a string. But display only first n characters. Note: My input has other...
by nareshinsvu Builder in Splunk Search 03-18-2019
0 5
0
5
sarit_s
Hello, I have log that contains this value : <0> 10/03/19 16:55:00 : Maintenance counter "UV Calibration" Value is:...
by sarit_s Communicator in Splunk Search 03-18-2019
0 9
0
9
lekshmi279
I have some users with shift timings (Start and End time in a lookup file). How can I use Splunk to chart their avail...
by lekshmi279 New Member in Splunk Search 03-17-2019
0 4
0
4
splunkuseradmin
Hello Everybody, I would like some help in sorting out different models with same kind and showing in a chart with t...
by splunkuseradmin Path Finder in Splunk Search 03-17-2019
0 2
0
2
karn
I would like to improve search performance by preload data into csv or kv-store with sparkline. How do I display spar...
by karn Path Finder in Splunk Search 03-16-2019
0 1
0
1
splunkuseradmin
Hello everyone, I have different device models in A1 and B1 where "A1" is calling device model and B1 is receiving d...
by splunkuseradmin Path Finder in Splunk Search 03-16-2019
0 2
0
2
evelandi
Hi experts, im trying to definde a variable in my search to use is in other search. it should work as a filter in the...
by evelandi New Member in Splunk Search 03-16-2019
0 1
0
1
vpurushottam
Hi guys, I have query regarding how i can break my search for one month into weekly searches. I have been given an ...
by vpurushottam Explorer in Splunk Search 03-16-2019
0 5
0
5
Prasenjit1508
I have a query which returns 100 ids(ids are dynamic). I have to search for these 100 ids in another log and see if t...
by Prasenjit1508 New Member in Splunk Search 03-15-2019
0 1
0
1
jspears
I have a user whose monthly report search is being auto-finalized due to disk usage. I've ensured there are no other ...
by jspears Communicator in Splunk Search 03-15-2019
0 2
0
2
veerendra_modi
I want to pick up values from different lookup files according to the sourcetype. | lookup error_rules.csv EventSubTy...
by veerendra_modi Loves-to-Learn in Splunk Search 03-15-2019
0 3
0
3
bstreber
I have come across an issue with my timecharts. When I do a search for all day on Feb 26th and check 9AM, I see 127...
by bstreber Path Finder in Splunk Search 03-15-2019
0 15
0
15
rajhemant26
Hello everyone. Want to display the output only for the time which crosses 18 months (earliest time)
by rajhemant26 New Member in Splunk Search 03-15-2019
0 2
0
2
Log_wrangler
Hi, I have a query that searches a field i.e. filenames with a value in this format >> filename = folder_name/sub_f...
by Log_wrangler Builder in Splunk Search 03-15-2019
0 1
0
1
mtupper
Below is the search string I am using. Everything works like perfect except for the description field. The field rema...
by mtupper New Member in Splunk Search 03-15-2019
0 1
0
1
MaryvonneMB
Hi all, I have a performance question about "join" and "subsearch". Even join is a ressource-guzzler command I saw t...
by MaryvonneMB Path Finder in Splunk Search 03-15-2019
0 1
0
1
hypePG
Hey, I got a dashboard with different panels. They are all controlled by a single timepicker. Usually the timeranges...
by hypePG Path Finder in Splunk Search 03-15-2019
0 5
0
5
Get Updates on the Splunk Community!

New Year, New Changes for Splunk Certifications

As we embrace a new year, we’re making a small but important update to the Splunk Certification ...

[Puzzles] Solve, Learn, Repeat: Unmerging HTML Tables

[Puzzles] Solve, Learn, Repeat: Unmerging HTML TablesFor a previous puzzle, I needed some sample data, and ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...
Top Solution Authors