Splunk Search

Splunk Search
Community Activity
thambisetty
Hi I have data like below in the Active Directory. Account Name - L-15485 D-5486 BLR-DC-09$ Here is my query; | se...
by SplunkTrust SplunkTrust in Splunk Search 12-11-2018
0 7
0
7
ChrisCLewis
Good afternoon, I am trying to find a way to carry out a search to find a subset of data and to then carry out more...
by ChrisCLewis Communicator in Splunk Search 12-11-2018
0 3
0
3
aragoma
The following field after event_message is event_parameters:Film Configuration: {0} Name: {1} DateTime: {2} Note: {3}...
by aragoma Engager in Splunk Search 12-11-2018
0 6
0
6
hanacurtis
I have several csv lookup tables that are nightly updated by a scheduled report when no one is using the system. The...
by hanacurtis New Member in Splunk Search 12-11-2018
0 0
0
0
splunksplunk232
HI all, I have a log file that looks like that: 10-12-2018(8:50) INFO system.logIn - log in: yoni 10-12-2018(8:50) ...
by splunksplunk232 Explorer in Splunk Search 12-11-2018
0 2
0
2
lohsed
I'm a fairly inexperienced Splunk user that could use some pointers on how to accomplish building a dashboard/table u...
by lohsed New Member in Splunk Search 12-11-2018
0 5
0
5
jabirabdulkader
How to get logs do you get logs regarding deleting or modifying file / Folder from servers?
by jabirabdulkader New Member in Splunk Search 12-11-2018
0 1
0
1
keishamtcs
Hi, I need to write an if statement for the following condition. I have two services in which status is shown by 0 o...
by keishamtcs Explorer in Splunk Search 12-11-2018
0 7
0
7
jabirabdulkader
How to configure to get alerts regarding software installation or uninstall from a server
by jabirabdulkader New Member in Splunk Search 12-11-2018
0 0
0
0
schose
Hi forum, We increased Memory on multiple VM Instances running splunk from 64GB to 128GB. On some instances change i...
by schose Builder in Splunk Search 12-11-2018
1 0
1
0
ddaks
Hi Team, I am new to splunk ,i need to know is there any possibility to create Alerts through SMS for monitoring 24/...
by ddaks New Member in Splunk Search 12-11-2018
0 0
0
0
angersleek
I'm using the following search and getting the following results. This search is done over 7 days. Is there a way I ...
by angersleek Path Finder in Splunk Search 12-11-2018
0 1
0
1
dinaabdelhakam
Hello There I have Field which states the Case ID whether its ACTIVE , RESOLVED, PENDING or CLOSED I need to count ea...
by dinaabdelhakam Path Finder in Splunk Search 12-11-2018
0 0
0
0
stevepkr84
Assuming these 3 docs, how can I create a table where I dedupe by account (I want the most recently ingested event) a...
by stevepkr84 New Member in Splunk Search 12-11-2018
0 5
0
5
damonmanni
I want to display a modified time-picker that shows only the following preset choices: Last 24 hours Last 3 days Las...
by damonmanni Path Finder in Splunk Search 12-10-2018
0 0
0
0
albyva
I am running a DNS lookup on IP addresses using the following arrangement, but it is running very, very, very, slow b...
by albyva Communicator in Splunk Search 12-10-2018
0 3
0
3
rsantoso_splunk
I have a Search Head cluster setup. Within the search app, I have defined a number of lookups, which I would like to ...
by rsantoso_splunk Splunk Employee Splunk Employee in Splunk Search 12-10-2018
0 2
0
2
arpitadu
Hi all, I have loaded the last 3 years of historical data from a CSV file to Splunk — so source is "XYZ.csv". On the...
by arpitadu Explorer in Splunk Search 12-10-2018
0 2
0
2
a212830
Hi, I had to rebuild an indexer, and it's now up and running, but it doesn't have the most recent updates that we ha...
by a212830 Champion in Splunk Search 12-10-2018
0 7
0
7
ankithreddy777
We have Windows servers blocked for executing batch scripts. So, how do I run the below Splunk CLI command schedul...
by ankithreddy777 Contributor in Splunk Search 12-10-2018
0 1
0
1
medvelsplunk
Hi I have this search in my dashboard and i want create a token filter for search the result of the field "sucursal...
by medvelsplunk Engager in Splunk Search 12-10-2018
0 2
0
2
lball
I'm trying to filter my Tenable results to show only vulnerabilities seen within the last 7 days. Here is my current ...
by lball Explorer in Splunk Search 12-10-2018
0 3
0
3
angersleek
I am trying to combine results from two different time lines into a single table. The search query for 1 day as fol...
by angersleek Path Finder in Splunk Search 12-10-2018
0 2
0
2
jsights
I've read through a lot of articles, but I can't figure out how to make this work. My query is below. For ease of rea...
by jsights New Member in Splunk Search 12-10-2018
0 1
0
1
dinaabdelhakam
Hello There, I have a file CSV as shown in the attached screenshot. I want someone to help me to draw these dates on...
by dinaabdelhakam Path Finder in Splunk Search 12-10-2018
0 1
0
1
Get Updates on the Splunk Community!

Developer Spotlight with Denis Gladkikh

From Splunk Engineer to Kubernetes App Builder Denis GladkikhWhat happens when a lifelong developer turns a ...

Governing Enterprise AI, Bringing Cisco Telemetry Home, and More from Splunk Lantern

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...
Top Solution Authors