Splunk Search

Splunk Search
Community Activity
nuaraujo
Hello all, I need your help with the following search: I have a lookup file with a list of ids and account ID's ...
by nuaraujo Path Finder in Splunk Search 12-12-2018
0 2
0
2
charlesmcdonald
Good Morning. I'm trying to populate an HTML page using the results of a search. To do this, I've been creating toke...
by charlesmcdonald Path Finder in Splunk Search 12-12-2018
0 4
0
4
russell120
The new myTimefield is blank for some reason -- anyone know why? Consider the below code I'm using: |makeresults |ev...
by russell120 Communicator in Splunk Search 12-12-2018
0 3
0
3
j_r
Hi, My log files look like this: ID Job_Type Target Event1 1 A X Event2 1 B Y Event3 2 A...
by j_r Path Finder in Splunk Search 12-12-2018
0 7
0
7
MikeBertelsen
On a heavy forwarder, I have the following in the props and transforms files: props.conf [source::/opt/TJApplication/...
by MikeBertelsen Communicator in Splunk Search 12-12-2018
0 5
0
5
tilbins
I am trying to prevent my multi-line events from being broken into individual rows. My logs are similar to this: 201...
by tilbins Explorer in Splunk Search 12-12-2018
0 6
0
6
jmauritz
Hello, I try to change the font colour within a chart. Unfortunately I can only create dashboards and don't have any...
by jmauritz New Member in Splunk Search 12-12-2018
0 3
0
3
skribble5
Hello there, My current code is giving me the following (if the screenshot is not clear, I provide the numbers later...
by skribble5 Explorer in Splunk Search 12-12-2018
0 3
0
3
AlexHoller
hi, I have following situation in splunk (see picture below). I need following pattern in Splunk (see picture bel...
by AlexHoller New Member in Splunk Search 12-12-2018
0 1
0
1
smoig
Hi Folks, I'm using Splunk version 4.0 (with App verion 6.6.1) and I'm pretty new to Splunk — I've been using it for...
by smoig New Member in Splunk Search 12-12-2018
0 2
0
2
kingwaras
Hi all, I need your help. I created a lookup file (hierarchy_lookup.csv) with this layout I would like to create ...
by kingwaras Engager in Splunk Search 12-12-2018
0 3
0
3
TGeorgeDN
In our inital release version 0.9.0 (https://splunkbase.splunk.com/app/4317/) we intentionally adjusted the app navig...
by TGeorgeDN Engager in Splunk Search 12-12-2018
1 0
1
0
whrg
Hello all, I have been adding sparklines to my tables. I noticed that sometimes the sparklines look cut off at the e...
by whrg Motivator in Splunk Search 12-12-2018
1 0
1
0
ybartel
Hey, i would like to send fields separate from raw data, so its not displayed in normal search result eventtext, onl...
by ybartel New Member in Splunk Search 12-12-2018
0 0
0
0
shihabno
i am looking for ideas how to generate report in the following format Clustername HF UF cl01 ...
by shihabno New Member in Splunk Search 12-12-2018
0 0
0
0
sindhoo
I have created a query which have 4 columns in statistics and want to show column chart as well but with 3 columns. h...
by sindhoo Engager in Splunk Search 12-11-2018
0 6
0
6
rosantos
Hi, I'm trying to export some data with the dump command, the data from the dump is not exported correctly, some valu...
by rosantos New Member in Splunk Search 12-11-2018
0 3
0
3
mabinn
Hi, I am stuck trying to manipulate my table when using a subsearch. Please see below query. search .... | stats c...
by mabinn Explorer in Splunk Search 12-11-2018
0 4
0
4
cochang
I'm trying to come up with a query that's a percentage of users (via session ids) experiencing errors. i can find the...
by cochang New Member in Splunk Search 12-11-2018
0 1
0
1
ansif
Data is like below: Is there any way to enable Total Summary but ignore "%" row to calculate Total?
by ansif Motivator in Splunk Search 12-11-2018
0 3
0
3
marvinlee93
Hi all, I would like to create a table that contains 3 scenarios. ( Low, High, Severe) The table will keep appendi...
by marvinlee93 Explorer in Splunk Search 12-11-2018
0 2
0
2
cboillot
I have inherited an deployment that has multiple environments: PROD, FTI, and oldFTI. I am needing to search from FTI...
by cboillot Contributor in Splunk Search 12-11-2018
0 1
0
1
net1993
Hi I was participating today to system admin course and found out at the end of the course the lab will be active on...
by net1993 Path Finder in Splunk Search 12-11-2018
0 7
0
7
wagnerj02
source=****** "Result from operation" | rex field=message ".*?returnCode=(?<code>\d+).*" | eval status=if(code=0000,"...
by wagnerj02 Engager in Splunk Search 12-11-2018
0 8
0
8
jimbolya11
I have an existing column "Date" and I need to convert it from a string like 4/2/2018 to a date of 4/2/2018. I've tr...
by jimbolya11 New Member in Splunk Search 12-11-2018
0 4
0
4
Claim a $25 Cisco Store Gift Card
Help us improve the Splunk Community and complete our survey today!
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk, and empower your SOC to reach new heights! Duration: 1 hour  Prepare to ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...