Splunk Search

Splunk Search
Community Activity
rajindurbal
I see the host IP 1.2.3.4 with 1000 events in the last 30 minutes. However, when I run the search, the search does no...
by rajindurbal Path Finder in Splunk Search 12-05-2018
0 5
0
5
mamerige
I'd like to conditionally add a parameter to my Splunk query based on the version number of my application. I have ...
by mamerige Engager in Splunk Search 12-05-2018
0 0
0
0
JohnGilmour
Hello All, I have a number of individual records in Splunk, all with a common field of X, that i'm trying to combin...
by JohnGilmour New Member in Splunk Search 12-05-2018
0 2
0
2
xerosaburu
I'm researching the effects of upgrading from Oracle 12.1 to Oracle 12.2 on Exadata. I need to know if there are any ...
by xerosaburu New Member in Splunk Search 12-05-2018
0 0
0
0
whrg
Hello, I have events that span multiple lines. One such event looks as follows: ... # User details ID: 123 Username:...
by whrg Motivator in Splunk Search 12-05-2018
0 6
0
6
vikashperiwal
I have a query , where i have multiple append commands used to get the output result. The query has 1 index and 3 so...
by vikashperiwal Path Finder in Splunk Search 12-05-2018
0 5
0
5
RWL01
How do I format the x-axis to look like the first picture from the timechart documentation? To clarify,I want to have...
by RWL01 Engager in Splunk Search 12-05-2018
0 6
0
6
dinaabdelhakam
Hello There I want to hide this section from time picker Presets in specific app not in the search and reporting app ...
by dinaabdelhakam Path Finder in Splunk Search 12-05-2018
0 10
0
10
bollam
For an instance, I want to calculate the runtime of each stage of two trains and but there are stages which one of th...
by bollam Path Finder in Splunk Search 12-05-2018
0 4
0
4
kmaron
We have a process that runs for various pieces of our system, and I'm trying to prevent any overlaps. I have been ab...
by kmaron Motivator in Splunk Search 12-05-2018
0 2
0
2
sistemistiposta
Hello, I extracted a field like this: folder="prova^1.ED56GH" and I want to change it at search time by replacing...
by sistemistiposta Path Finder in Splunk Search 12-05-2018
0 2
0
2
vumanhtai
Hi Team Splunk! How can i do this? Thanks!
by vumanhtai Path Finder in Splunk Search 12-05-2018
0 4
0
4
abhishekgandhe
I have 2 keywords. "UniSim Job received" and "UniSim Job Run completed successfully". I want to find the difference...
by abhishekgandhe Explorer in Splunk Search 12-04-2018
0 2
0
2
hxzq2018
linux(RHEL 6.5 ) Python 2.7.15+splunk-sdk-python-1.6.5 http(not https) code: from splunklib.client import connect ...
by hxzq2018 New Member in Splunk Search 12-04-2018
0 2
0
2
atul9771
I'm new to splunk. I have a log event in the following format. The report should capture the Hostname, Agentname and...
by atul9771 Engager in Splunk Search 12-04-2018
0 4
0
4
saifullakhalid
I tried working on this, but I was unsuccessful. Here is my query and the logs: Query: source=“/var/log/*.log” plat...
by saifullakhalid Explorer in Splunk Search 12-04-2018
0 1
0
1
bstreber
I am working on a dashboard that shows the results based off of a MAC address. However, the address I need is on a di...
by bstreber Path Finder in Splunk Search 12-04-2018
0 8
0
8
takashi6
Hi expert, I'm trying to use sparkline inside join subsearch. The result out of the sparkline is not rendered proper...
by takashi6 Explorer in Splunk Search 12-04-2018
0 6
0
6
bond77s
I would like to create a indicator on PsExec’s use of the C$, ADMIN$, and/or IPC$ shares and identifying User Access ...
by bond77s Explorer in Splunk Search 12-04-2018
0 1
0
1
mistydennis
I have 4 mv fields, some with different number of values, all with no visible delimiter. My search: | inputlook...
by mistydennis Communicator in Splunk Search 12-04-2018
0 4
0
4
danielgp89
Hello! I'm trying to make a drilldown in the same dashboard with the famous Table Row Expansion. Basing myself in t...
by danielgp89 Path Finder in Splunk Search 12-04-2018
0 0
0
0
james_n
HI, I have a query index=something | timechart latest(fieldA) as datavalues by dataNames. when i select the time du...
by james_n Path Finder in Splunk Search 12-04-2018
0 5
0
5
SplunkNewbie18
Hi, My search is based on 3 sources (firewall log, ioc feed macro and lookup table for ioc). To check for any match ...
by SplunkNewbie18 New Member in Splunk Search 12-04-2018
0 1
0
1
chirsf
Hi, First time asking. I did a search, but maybe I used the wrong keywords. Apologies if this is a duplicate. I hav...
by chirsf Explorer in Splunk Search 12-04-2018
0 7
0
7
kingwaras
Hi all, is there a way to compare two strings in a search query? I would extract only the value greater than of Lev...
by kingwaras Engager in Splunk Search 12-04-2018
0 5
0
5
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...