Splunk Search

Splunk Search
Community Activity
aojie654
OS: CentOS 7 Component: Search Head, Indexer Product: Splunk Enterprise Version: 7.2.1 OS: Windows server200...
by aojie654 Path Finder in Splunk Search 12-17-2018
0 5
0
5
kiamco
I have this query that is supposed to get the difference between the primary region and all other regions, but for so...
by kiamco Path Finder in Splunk Search 12-17-2018
0 3
0
3
rbrisseyii
Hello, I have a search with several OR statements in it. Example, Microservice=this OR Microservice=that. When the s...
by rbrisseyii Explorer in Splunk Search 12-17-2018
0 5
0
5
bm1391
Here is my current query: index=wineventlog sourcetype=WinEventLog:Security EventCode=4625 | rex ".*Account\sName:\s...
by bm1391 New Member in Splunk Search 12-17-2018
0 3
0
3
itionet
Hi All, I'm trying to extract a field. However, the field I want to extract isn't at the same location each time....
by itionet New Member in Splunk Search 12-17-2018
0 8
0
8
kingwaras
Hi all, with the query below I have extracted the sum of overtime per day. index="effort_tracker" | stats count by...
by kingwaras Engager in Splunk Search 12-17-2018
0 1
0
1
jmajumdar
Hello - Is there a way to split the line below : with '--". This is from the IIS logs of Amazom Kinesis. 200 is h...
by jmajumdar Explorer in Splunk Search 12-17-2018
0 2
0
2
rpquinlan
I'm still pretty new so the answer is probably easy, but am stuck trying to making this search form work. The goal i...
by rpquinlan Path Finder in Splunk Search 12-17-2018
0 9
0
9
catchaj88
We are running a Kubernetes cluster and are shipping pod logs to Splunk Cloud. Our current setup: 1. Universal forw...
by catchaj88 Explorer in Splunk Search 12-17-2018
0 1
0
1
hyungjoon
For some reason when I have Time as below, and use (| eval SortingTime=strftime(SortingTime, " %H:%M:%S") I always...
by hyungjoon New Member in Splunk Search 12-17-2018
0 4
0
4
karthi2809
How to extract field using mode=sed for name extraction? index=test Sender=PEGAS | rex field= URI"^(?.+?)(\?|\z)" |...
by karthi2809 Builder in Splunk Search 12-17-2018
1 7
1
7
jliu531
If I have two searches as below (uniqueId is a common field exists in both searches, while field1, field2 are unique...
by jliu531 Engager in Splunk Search 12-17-2018
0 1
0
1
ronniemakhombi
I am new to Splunk. I am having a problem sorting my search results by week. I tried using the following dates as my ...
by ronniemakhombi Explorer in Splunk Search 12-17-2018
0 8
0
8
soumyasaha25
how can i reset splunk.com login password, the email id in the account has a typo, so the reset password option is no...
by soumyasaha25 Contributor in Splunk Search 12-17-2018
0 3
0
3
vikashperiwal
HI, i am trying to display multiple fields like num1, num2, num 3 in map and trying to gets its lat and long from ex...
by vikashperiwal Path Finder in Splunk Search 12-17-2018
0 3
0
3
xchang1226
We index a lot of data in Splunk, but we also have a lot of other tools, we would like to use Splunk as single pane o...
by xchang1226 Path Finder in Splunk Search 12-17-2018
0 6
0
6
JerryLives
I am working on an app that will have an interactive UI where you could input a hash value and afterwards the app wou...
by JerryLives Engager in Splunk Search 12-17-2018
0 0
0
0
kteng2024
Hi, I was wondering is there a Splunk command to find out configuration errors? For example, LINE_BrEAKER in props ...
by kteng2024 Path Finder in Splunk Search 12-17-2018
0 7
0
7
mboiz
Hi All, Please help me create a query that compares cpu and memory with threshold performance in 1 month ( 4 data ) ...
by mboiz New Member in Splunk Search 12-16-2018
0 5
0
5
mlevsh
How can I extract hostname from the path for host_regex in data input on directory monitoring? I need only host name...
by mlevsh Builder in Splunk Search 12-16-2018
0 3
0
3
eyirik
I have events like the ones below. I want to make a different field extraction according to the value of field MODEL....
by eyirik Explorer in Splunk Search 12-16-2018
0 9
0
9
marounb98
hello , can anyone tell how can i retrieve the values of a correlation matrix from Splunk web into a text file (nam...
by marounb98 New Member in Splunk Search 12-16-2018
0 0
0
0
j_r
Hi my basesearch... index = lc source= X |stats count by status ...gets me the amount status by status: Status Am...
by j_r Path Finder in Splunk Search 12-16-2018
0 6
0
6
rakesh44
I have big data in an Index, but I am looking for the specific data of time & date of system generated. I have a thi...
by rakesh44 Communicator in Splunk Search 12-15-2018
0 1
0
1
ridwanahmed
This search is looking back one month over a large dataset. I would like it to be accelerated, and run once a month o...
by ridwanahmed Path Finder in Splunk Search 12-14-2018
0 5
0
5
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...
Top Solution Authors