Splunk Search

Splunk Search
Community Activity
williamcharlton
I do believe I'm missing something fundamental here.... So, the search: index=X returns many events where each even...
by williamcharlton Path Finder in Splunk Search 03-11-2019
0 4
0
4
damucka
Hello, I know it is a simple question but I am somehow struggling with it. I have the following search: index=mlbso...
by damucka Builder in Splunk Search 03-11-2019
0 1
0
1
mlorrette
Creating stats count based on a sequence of events within a timeframe. For example, count the unique sessions, withi...
by mlorrette Path Finder in Splunk Search 03-11-2019
1 4
1
4
nilanjankc
I have a table like below in Splunk I want to apply a group by on Event Number col and want to get the top(latest) ...
by nilanjankc New Member in Splunk Search 03-11-2019
0 6
0
6
dadepu
Hi Splunkers, Is it possible to add an External URL as Hyperlink in the message body of an alert? I know we can pl...
by dadepu Engager in Splunk Search 03-11-2019
1 3
1
3
jip31
Hi I would like to catch the information in the example below: This search has completed and has returned 1 000 rés...
by jip31 Motivator in Splunk Search 03-11-2019
0 2
0
2
chandrajay
While using splunk, we are missing some events in search index. There is no repeated behavior of this kind but they a...
by chandrajay New Member in Splunk Search 03-11-2019
0 0
0
0
jip31
Hello I use the eval below in order to calculate a percentage | eval Trend_Proc_time=round(100-(Proc_dest*100)/(Proc...
by jip31 Motivator in Splunk Search 03-11-2019
0 4
0
4
nickcardenas
Hi all, I know many questions exist similar to this one but none are useful for my particular use case. Please if s...
by nickcardenas Path Finder in Splunk Search 03-11-2019
1 9
1
9
eduspk
Hi All Please help me to extract username from the emailid. Ex: test123@test.com abc2@test.com Required: test123...
by eduspk Explorer in Splunk Search 03-11-2019
0 1
0
1
ayush1906
I am having data in a single field in this format: 1. xyz 2. dsh bh 3. sdh dsd() 4. trrt .... so on I want to split...
by ayush1906 Path Finder in Splunk Search 03-11-2019
0 2
0
2
monipinni
I have two fields body.response.failedItemsCount , body.failedItemsCount , In this I have to filter with two unwanted...
by monipinni Explorer in Splunk Search 03-11-2019
0 1
0
1
rajhemant26
Hello everyone. Want to display the output only for the time which crosses 18 months (earliest time)
by rajhemant26 New Member in Splunk Search 03-11-2019
0 3
0
3
mdmaala
In my table, I have a field named Username, and it has two values: Machine 1 and 2. I only want to show Machine1 only...
by mdmaala Communicator in Splunk Search 03-11-2019
0 6
0
6
ramesh12345
Hi, index="os" sourcetype="test" CaseNumber=*| dedup _time,CaseNumber | rex field=Notes "(?\d+-\d+-\d+\s*\d+:\d+:\...
by ramesh12345 Explorer in Splunk Search 03-11-2019
0 3
0
3
adri9valle
Hi, I'm trying to do a simple search that returns the top repeated values of a field. The problem is that this fiel...
by adri9valle New Member in Splunk Search 03-11-2019
0 2
0
2
dheerajsh
Hi Team, We have a requirement where we need to deploy Splunk Solution only for Log management purpose (less 50 GB p...
by dheerajsh Engager in Splunk Search 03-10-2019
0 2
0
2
dojiepreji
I need to create a chart that will display the open and resolved tickets over time. Here is my current code: | eva...
by dojiepreji Path Finder in Splunk Search 03-10-2019
0 6
0
6
divyathota
This is the query i m using: query1: sourcetype=tanium earliest=-24h query="User-Sessions-and-Boot-Time-Details-from...
by divyathota New Member in Splunk Search 03-10-2019
0 3
0
3
zuma01
Hi All, I'm just getting started so this is probably going to be an easy one. I have Splunk light and have setup P...
by zuma01 New Member in Splunk Search 03-10-2019
0 3
0
3
GauravSplunxter
Can you run a Splunk search and have it only return the first log value identified at a certain time per day, and the...
by GauravSplunxter Explorer in Splunk Search 03-10-2019
0 4
0
4
rashid47010
I want to use the eval function with cidrmatch function like 1- who to mention multip subnets in x field against cid...
by rashid47010 Communicator in Splunk Search 03-10-2019
0 1
0
1
mdmaala
in my table, I have a field named Username, and it has two values: Machine 1 and 2. I only want to show Machine1 only...
by mdmaala Communicator in Splunk Search 03-10-2019
0 0
0
0
tej8
I have two fields "body.response.successfulItemsCount" & "body.successfulItemsCount". I need sum of total of these tw...
by tej8 New Member in Splunk Search 03-10-2019
0 1
0
1
shaikbavaji
sourceType="source_log" | rex field=_raw .... ........ Expected output : Service_call Avf for 03/04 avg ...
by shaikbavaji New Member in Splunk Search 03-09-2019
0 5
0
5
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...
Top Solution Authors