Splunk Search

Splunk Search
Community Activity
cquinney
Greetings I'm looking to create an alert if a field value consecutively remains above a specific threshold, say 500....
by cquinney Communicator in Splunk Search 03-12-2019
0 5
0
5
ychichani
I have log as below: {"Timestamp":"2019-03-12T16:25:11.4287941+00:00","Level":"Fatal","MessageTemplate":"{Level}: {E...
by ychichani New Member in Splunk Search 03-12-2019
0 4
0
4
pench2k19
Hi Team, I have the following field values and i want extract only the highlighted values from it. utility_extract...
by pench2k19 Explorer in Splunk Search 03-12-2019
0 13
0
13
pench2k19
Hi Team, I have following two events from where i need to extract the status )V 2019-03-11 msp raw utility_extract...
by pench2k19 Explorer in Splunk Search 03-12-2019
0 2
0
2
user93
source A : filename,title,version,type,date source B: filename,date I want to compute the title field for source b an...
by user93 Communicator in Splunk Search 03-12-2019
0 3
0
3
jcburley
I've tried inserting eval first_line=mvindex(split(_raw,"\n"),0) in the pipeline, but that doesn't seem to do the tri...
by jcburley Engager in Splunk Search 03-12-2019
0 5
0
5
agentsofshield
I usually use "dbxquery" but it only works in the search app. I'm trying to export data from a database through Splun...
by agentsofshield Path Finder in Splunk Search 03-12-2019
0 2
0
2
coulouteg
Good morning Guys, I am relatively new to Splunk. I am trying to obtain a list of all the "Devices" and their "Names...
by coulouteg New Member in Splunk Search 03-12-2019
0 1
0
1
asharm65
Hi, i am joining two queries which results in some blank values,but when the sub-search is ran independently there i...
by asharm65 New Member in Splunk Search 03-12-2019
0 1
0
1
pravinvram
Am having a lookup which is created based on 90 days data , once this lookup is generated i need to query this data b...
by pravinvram Engager in Splunk Search 03-12-2019
0 1
0
1
brdr
Hello, I need a way to join different sourcetypes based on a field (alert) that is common in both sourcetypes. The n...
by brdr Contributor in Splunk Search 03-12-2019
0 3
0
3
agentsofshield
Is there a Splunk query to add a new row or a new column to a lookup table? I specifically ask for a query because I...
by agentsofshield Path Finder in Splunk Search 03-12-2019
1 9
1
9
user93
source A : filename,title,version,type,date source B: filename,date I want to compute the title field for source b a...
by user93 Communicator in Splunk Search 03-12-2019
0 4
0
4
rakesh44
I wan to count no of rows or columns injected in splunk from oracle database. Purpose of this is to compare data with...
by rakesh44 Communicator in Splunk Search 03-12-2019
0 1
0
1
ADRIANODL
Hi folks, I have 2 indexes containing information as below: index ABC _time sessionkey ...
by ADRIANODL Explorer in Splunk Search 03-12-2019
0 1
0
1
danfinan
Hi all, Apologies for the vague title, I have a lookup problem that I need help with, so any help is greatly appreci...
by danfinan Explorer in Splunk Search 03-12-2019
0 0
0
0
veerendra_modi
| lookup error_rules_latest.csv EventType OUTPUT alert_type wait_time reoccurrence_window threshold_count reoccurrenc...
by veerendra_modi Loves-to-Learn in Splunk Search 03-12-2019
0 5
0
5
LuiesCui
Hey fellow Splunker's. I'm trying to extract some fields from Windows event logs. When I search these logs the conten...
by LuiesCui Communicator in Splunk Search 03-12-2019
0 4
0
4
eduspk
Hi All I want to extract file name from the path Ex: ..../../default/folder/temp.txt output: Filename temp.txt
by eduspk Explorer in Splunk Search 03-12-2019
0 2
0
2
DavisLee
How can I determine: 1) Why a Lookup is working on one search head but not on another? 2) How to get it to work on ...
by DavisLee New Member in Splunk Search 03-12-2019
0 4
0
4
jip31
Hello I use the search below and I would like to do 2 different things 1) How to do for adding a word after the stat...
by jip31 Motivator in Splunk Search 03-12-2019
0 4
0
4
eduspk
Hi All Please help me with rex to filter name by id which start with "9" . Ex: Sample log ContactId:"12345,5678,9...
by eduspk Explorer in Splunk Search 03-12-2019
0 2
0
2
wtaylor149
I'm trying to pull events from a lookup file that has in one column a timestamp. There will be instances where I'll ...
by wtaylor149 Explorer in Splunk Search 03-12-2019
0 5
0
5
varshna
I have these pattern in logs and I want to search burst of requests coming from one IP address For example: line: ...
by varshna New Member in Splunk Search 03-11-2019
0 6
0
6
HattrickNZ
This is my sample search: | makeresults | eval data = " 1-Sep 657 34 35; 2-Sep 434 34 35; " |...
by HattrickNZ Motivator in Splunk Search 03-11-2019
0 3
0
3
Get Updates on the Splunk Community!

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...
Top Solution Authors