Splunk Search

Splunk Search
Community Activity
tullir
HI folks! I need to group by two variables but am having trouble figuring it out. time ip_address user ...
by tullir New Member in Splunk Search 02-25-2019
0 5
0
5
ramesh12345
Hi, index="os" sourcetype="Service" CaseNumber="Test-2018*" (Group="Secure" OR Group="health") AND (Section="Connect...
by ramesh12345 Explorer in Splunk Search 02-25-2019
0 3
0
3
pavanae
I have a search as follows: index="x" search_name="`Y`" (status=Z) | `A` |`B` where A and B are macros Now how ca...
by pavanae Builder in Splunk Search 02-25-2019
0 7
0
7
marcoemme41
Hello, I have a problem extracting data from a log with format not fixed. I explain: each row of my log contains a m...
by marcoemme41 New Member in Splunk Search 02-25-2019
0 6
0
6
perlish
Hi everyone, My data is as flowing. The cnt is events count of scanner_type by day. I want to show everyday`s diff...
by perlish Communicator in Splunk Search 02-25-2019
0 1
0
1
ramesh12345
Hi, index="os" sourcetype="Service" status=* (Group="Data/Config" OR Group="Secure") AND (Section="Site Problem" OR ...
by ramesh12345 Explorer in Splunk Search 02-25-2019
0 0
0
0
HeinzWaescher
Hi, I would like to extract a new field from unstructured data. FX does not help for 100%, so I would like to use re...
by HeinzWaescher Motivator in Splunk Search 02-25-2019
1 2
1
2
pench2k19
Hi Team, I'm struggling to get the regex expression for the following values. I want to capture the text before the ...
by pench2k19 Explorer in Splunk Search 02-25-2019
0 2
0
2
mishaaaaaaaaaa
Hi splunk comunity! I have dashboard with text input, which starts to execute when i change my parameter in text box...
by mishaaaaaaaaaa Explorer in Splunk Search 02-24-2019
0 6
0
6
ajayrejin
Hi, How do I search in two indexes? I am looking for the IP address in both the indexes at that same point of time a...
by ajayrejin Explorer in Splunk Search 02-24-2019
1 6
1
6
ashishgarwal
Hi- I am pretty new to Splunk. Can we search for a specific (form) parameter against a POST REST call ?
by ashishgarwal New Member in Splunk Search 02-24-2019
0 1
0
1
tan_junyuan
I have the infra as shown below: Splunk Log Forwarder-> Splunk Indexer The Log forwarder defines which data goes int...
by tan_junyuan Engager in Splunk Search 02-23-2019
0 1
0
1
himanshu_b_shek
Hi , i want to calculate total no . of opened incidents by a user over a time interval in dynamic environment in spl...
by himanshu_b_shek New Member in Splunk Search 02-23-2019
0 4
0
4
jip31
Hi I use the search below in order to display GOOD or BAD in a panel When I execute the query i have a result But I...
by jip31 Motivator in Splunk Search 02-23-2019
0 8
0
8
jip31
Hi, I use the search below in order to display the model of a host for only the host which has a Wear_Rate>0 But th...
by jip31 Motivator in Splunk Search 02-23-2019
0 2
0
2
pratyushak
I have data in json format as following:- {Run=1 , Average=2.1, Max=3, Min=1.4, Transaction=Sample1} {Run=1 , Average...
by pratyushak New Member in Splunk Search 02-22-2019
0 2
0
2
aa274t
I am using distinct count with time chart for the whole day (yesterday). The result is varying if the span is change...
by aa274t New Member in Splunk Search 02-22-2019
0 5
0
5
mrstrozy
Hi, I was wondering how I can reference the time picker on load for a dashboard and make sure that it's the right fo...
by mrstrozy Path Finder in Splunk Search 02-22-2019
0 1
0
1
RickerNJ
ok so...I have been banging my head against the wall on this one for a bit. I have tried using join (which I don't an...
by RickerNJ New Member in Splunk Search 02-22-2019
0 5
0
5
toddhawkins
I have a user that is a doing a search that has | dedup in it. While I can see the results when I run the search (I'm...
by toddhawkins New Member in Splunk Search 02-22-2019
0 4
0
4
jip31
hi I use the search below index =* sourcetype=* | dedup host | stats count This search returns 87 events I try t...
by jip31 Motivator in Splunk Search 02-22-2019
0 5
0
5
jip31
hi I use the search below and I would like to have a 0 results displayed when there is no events corresponding could...
by jip31 Motivator in Splunk Search 02-22-2019
0 14
0
14
cadrija
I have integrated Splunk with JIRA. I want to see the list/count of defects created in last 7 days. I'm picking the c...
by cadrija Path Finder in Splunk Search 02-22-2019
0 1
0
1
mlevsh
Hi, what would be the best way to find indexes with events and display its size, total events , earliest and latest ...
by mlevsh Builder in Splunk Search 02-22-2019
0 4
0
4
vaibhavvijay9
Hi All, I have to monitor the queues. And for that I have made the basic dashboard where it shows the details. Detai...
by vaibhavvijay9 New Member in Splunk Search 02-22-2019
0 1
0
1
Get Updates on the Splunk Community!

Deep insights, no barriers: Splunk Observability Cloud Free Edition

As software delivery cycles continue to accelerate, observability shouldn’t be a luxury — it should be a ...

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...
Top Solution Authors