Splunk Search

Splunk Search
Community Activity
kteng2024
Hi, I was wondering is there a Splunk command to find out configuration errors? For example, LINE_BrEAKER in props ...
by kteng2024 Path Finder in Splunk Search 12-17-2018
0 7
0
7
mboiz
Hi All, Please help me create a query that compares cpu and memory with threshold performance in 1 month ( 4 data ) ...
by mboiz New Member in Splunk Search 12-16-2018
0 5
0
5
mlevsh
How can I extract hostname from the path for host_regex in data input on directory monitoring? I need only host name...
by mlevsh Builder in Splunk Search 12-16-2018
0 3
0
3
eyirik
I have events like the ones below. I want to make a different field extraction according to the value of field MODEL....
by eyirik Explorer in Splunk Search 12-16-2018
0 9
0
9
marounb98
hello , can anyone tell how can i retrieve the values of a correlation matrix from Splunk web into a text file (nam...
by marounb98 New Member in Splunk Search 12-16-2018
0 0
0
0
j_r
Hi my basesearch... index = lc source= X |stats count by status ...gets me the amount status by status: Status Am...
by j_r Path Finder in Splunk Search 12-16-2018
0 6
0
6
rakesh44
I have big data in an Index, but I am looking for the specific data of time & date of system generated. I have a thi...
by rakesh44 Communicator in Splunk Search 12-15-2018
0 1
0
1
ridwanahmed
This search is looking back one month over a large dataset. I would like it to be accelerated, and run once a month o...
by ridwanahmed Path Finder in Splunk Search 12-14-2018
0 5
0
5
atulitm
index=X sourcetype=X source=X | timechart first(percentage_allocation) as percentage_allocation by devicename I am...
by atulitm Path Finder in Splunk Search 12-14-2018
0 4
0
4
robertcoanca
Hello everyone, I have a dashboard where some stacked volumes(7) are represented and also I added the total of these...
by robertcoanca Explorer in Splunk Search 12-14-2018
0 1
0
1
pvrk007
My log Data is in this format: response="{"status":"success","Registries":[{"create":"2018-08-28","last":null,"Story...
by pvrk007 New Member in Splunk Search 12-13-2018
0 1
0
1
krusovice
Hi all, I have a simple regex to extract 2 fields — name1 and name2. And I would need to combine it like this: name1...
by krusovice Path Finder in Splunk Search 12-13-2018
1 8
1
8
yolandxx
Hi, I want to know if it is possible to do the following table in Splunk dashboard. Thanks.
by yolandxx New Member in Splunk Search 12-13-2018
0 2
0
2
tjago11
Trying to analyze some windows perfmon data. The data looks like this: counter -> name of performance metric (ie. % P...
by tjago11 Communicator in Splunk Search 12-13-2018
0 4
0
4
adewinter
As in subject, I run the following command: MY_SEARCH | iplocation allfields=true clientip | table lat lon And th...
by adewinter Explorer in Splunk Search 12-13-2018
0 5
0
5
thirumalreddyb
Hi. I tried the following search, some search... | fields cip | stats count by cip | iplocation cip I have workin...
by thirumalreddyb Communicator in Splunk Search 12-13-2018
0 2
0
2
sureshkrovi
Hi, Am trying to integrate Jira with Splunk enterprize and followed below steps. 1. Installed Add-on for Jira http...
by sureshkrovi Explorer in Splunk Search 12-13-2018
0 1
0
1
pbalbasm
Hi everyone, I would like to know if it's compatible using tags and summary index at the same time. Thanks for ever...
by pbalbasm Path Finder in Splunk Search 12-13-2018
0 1
0
1
davidec137
I'm trying to edit inputs.conf in my forwarder to show ONLY Event 4624, with only Logon Type 2 or 11. I've seen many...
by davidec137 New Member in Splunk Search 12-13-2018
0 1
0
1
moorvogi
I'm fairly new to regex. In other languages, i just string split and hack it up as needed, but i'm trying to use rege...
by moorvogi Path Finder in Splunk Search 12-13-2018
0 1
0
1
richardphung
I am attempting to get the top values from a datamodel and output a table. The query that I am using: | from datamo...
by richardphung Communicator in Splunk Search 12-13-2018
0 1
0
1
zacksoft
Below is a sample event. I could use some help in regex in fetching the value "29.3445667" present in the last part o...
by zacksoft Contributor in Splunk Search 12-13-2018
0 1
0
1
blaku
フィールドvalueに値が、affectedにその条件が入っています。 例 No value affected 1 10 = 2 5 =< 3 1 != イベント毎にaff...
by blaku Explorer in Splunk Search 12-13-2018
0 1
0
1
lloyddavage
The below query works fine it. It displays all of the heartbeats generated. What I would like though is to show just...
by lloyddavage Explorer in Splunk Search 12-13-2018
0 3
0
3
zacksoft
My logs are all parsed by time stamps into a new event. Every line in the log starts with a time stamp. I am searchi...
by zacksoft Contributor in Splunk Search 12-13-2018
0 2
0
2
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...