Splunk Search

Splunk Search
Community Activity
user93
source A : filename,title,version,type,date source B: filename,date I want to compute the title field for source b an...
by user93 Communicator in Splunk Search 03-12-2019
0 3
0
3
jcburley
I've tried inserting eval first_line=mvindex(split(_raw,"\n"),0) in the pipeline, but that doesn't seem to do the tri...
by jcburley Engager in Splunk Search 03-12-2019
0 5
0
5
agentsofshield
I usually use "dbxquery" but it only works in the search app. I'm trying to export data from a database through Splun...
by agentsofshield Path Finder in Splunk Search 03-12-2019
0 2
0
2
coulouteg
Good morning Guys, I am relatively new to Splunk. I am trying to obtain a list of all the "Devices" and their "Names...
by coulouteg New Member in Splunk Search 03-12-2019
0 1
0
1
asharm65
Hi, i am joining two queries which results in some blank values,but when the sub-search is ran independently there i...
by asharm65 New Member in Splunk Search 03-12-2019
0 1
0
1
pravinvram
Am having a lookup which is created based on 90 days data , once this lookup is generated i need to query this data b...
by pravinvram Engager in Splunk Search 03-12-2019
0 1
0
1
brdr
Hello, I need a way to join different sourcetypes based on a field (alert) that is common in both sourcetypes. The n...
by brdr Contributor in Splunk Search 03-12-2019
0 3
0
3
agentsofshield
Is there a Splunk query to add a new row or a new column to a lookup table? I specifically ask for a query because I...
by agentsofshield Path Finder in Splunk Search 03-12-2019
1 9
1
9
user93
source A : filename,title,version,type,date source B: filename,date I want to compute the title field for source b a...
by user93 Communicator in Splunk Search 03-12-2019
0 4
0
4
rakesh44
I wan to count no of rows or columns injected in splunk from oracle database. Purpose of this is to compare data with...
by rakesh44 Communicator in Splunk Search 03-12-2019
0 1
0
1
ADRIANODL
Hi folks, I have 2 indexes containing information as below: index ABC _time sessionkey ...
by ADRIANODL Explorer in Splunk Search 03-12-2019
0 1
0
1
danfinan
Hi all, Apologies for the vague title, I have a lookup problem that I need help with, so any help is greatly appreci...
by danfinan Explorer in Splunk Search 03-12-2019
0 0
0
0
veerendra_modi
| lookup error_rules_latest.csv EventType OUTPUT alert_type wait_time reoccurrence_window threshold_count reoccurrenc...
by veerendra_modi Loves-to-Learn in Splunk Search 03-12-2019
0 5
0
5
LuiesCui
Hey fellow Splunker's. I'm trying to extract some fields from Windows event logs. When I search these logs the conten...
by LuiesCui Communicator in Splunk Search 03-12-2019
0 4
0
4
eduspk
Hi All I want to extract file name from the path Ex: ..../../default/folder/temp.txt output: Filename temp.txt
by eduspk Explorer in Splunk Search 03-12-2019
0 2
0
2
DavisLee
How can I determine: 1) Why a Lookup is working on one search head but not on another? 2) How to get it to work on ...
by DavisLee New Member in Splunk Search 03-12-2019
0 4
0
4
jip31
Hello I use the search below and I would like to do 2 different things 1) How to do for adding a word after the stat...
by jip31 Motivator in Splunk Search 03-12-2019
0 4
0
4
eduspk
Hi All Please help me with rex to filter name by id which start with "9" . Ex: Sample log ContactId:"12345,5678,9...
by eduspk Explorer in Splunk Search 03-12-2019
0 2
0
2
wtaylor149
I'm trying to pull events from a lookup file that has in one column a timestamp. There will be instances where I'll ...
by wtaylor149 Explorer in Splunk Search 03-12-2019
0 5
0
5
varshna
I have these pattern in logs and I want to search burst of requests coming from one IP address For example: line: ...
by varshna New Member in Splunk Search 03-11-2019
0 6
0
6
HattrickNZ
This is my sample search: | makeresults | eval data = " 1-Sep 657 34 35; 2-Sep 434 34 35; " |...
by HattrickNZ Motivator in Splunk Search 03-11-2019
0 3
0
3
BobKimata
I have connected to my database using Splunk DBConnect and using a simple sql query I have managed to get some data f...
by BobKimata Path Finder in Splunk Search 03-11-2019
1 3
1
3
mortya
So, I get a bunch of log entries that look something like this (grossly simplified) example: host1 tag - foo host1 t...
by mortya New Member in Splunk Search 03-11-2019
0 1
0
1
Oracle
Hello Splunkers, Need your help on this. This is my query for testing: | fields id | sort id | delta id AS delta...
by Oracle Explorer in Splunk Search 03-11-2019
0 4
0
4
coreybfoulds
Greetings, 'earliest': '03/09/2019:17:07:00' is significantly slower than "earliest_time": "-2d". Is this a known i...
by coreybfoulds New Member in Splunk Search 03-11-2019
0 2
0
2
Get Updates on the Splunk Community!

Observability Simplified: Combining User Experience, Application Performance & ...

Tech Talk Observability Simplified: Combining User Experience, Application Performance & Network ...

Event Series May & June: From Network Visibility to Service Intelligence

Unifying the Network: Moving from Alert Noise to Service Intelligence with Splunk ITSI In today’s hybrid ...

Global Splunk User Group Events: May + June 2026

Your Splunk Community Awaits: Discover Upcoming User Group Events Worldwide    Staying ahead in the fast-paced ...