Splunk Search

Splunk Search
Community Activity
PCIIT
I need to help writing the regex for date format with time zone. log format : 11 Sep 2018 18:40:42 (GMT +0200) Inf...
by PCIIT New Member in Splunk Search 12-03-2018
0 7
0
7
pfabrizi
I have a report that runs and builds a output.csv, the report is ',' delimited how ever when the file is parsed by a ...
by pfabrizi Path Finder in Splunk Search 12-03-2018
0 0
0
0
rcastello
Hello, I'm currently using this query to create a table: index=* sourcetype=* dport=139 OR sport=139 | eval timesta...
by rcastello Explorer in Splunk Search 12-03-2018
0 3
0
3
arunaLM
I normally use index=proxy username=12345 to check on visited sites. how do i check if the user downloaded any files ...
by arunaLM New Member in Splunk Search 12-03-2018
0 1
0
1
bollam
Hello, I'm trying to plot a graph based on three fields. The events contain the job, startTime, usedMemory. I want ...
by bollam Path Finder in Splunk Search 12-03-2018
0 3
0
3
maheshsat
I have a period field which is showing a monthly count. I am using | stats count by Period But, I am getting a coun...
by maheshsat Explorer in Splunk Search 12-03-2018
0 2
0
2
swetar
Hi , I have created a csv lookup and wanted to perform wild card search on it. Is it possible? lookup name # Inputl...
by swetar New Member in Splunk Search 12-03-2018
0 4
0
4
JuhiSaxena
hi, We created orphan searches report for our splunk system but seems its reporting few entries with active users wh...
by JuhiSaxena Explorer in Splunk Search 12-03-2018
0 0
0
0
vikas_baranwal
Hello everyone, I need your help in date\time comparison in table field itself. Lets suppose, any key value goes in...
by vikas_baranwal Path Finder in Splunk Search 12-03-2018
0 6
0
6
MikeElliott
Hi Team, I'm writing a search that will alert when a user account authenticates and is granted privileges. Our admi...
by MikeElliott Communicator in Splunk Search 12-03-2018
0 1
0
1
payal23
"ListOfLineItems.*?<OrderFunction>(?<OrderFunction>[^<]*)" Want to know if any alternative regex can be written to...
by payal23 Path Finder in Splunk Search 12-03-2018
0 11
0
11
zward
Hello, I am having some troubles with the lookup/inputlookup commands and was hoping someone could lend assistance. ...
by zward Path Finder in Splunk Search 12-02-2018
0 1
0
1
eugenezxq
I have 2 queries: |tstats values(sth.sth) as sth... |stats count by sth | ... and |tstats count from datamodel=sth...
by eugenezxq New Member in Splunk Search 12-02-2018
0 1
0
1
ID_SplunkUser
I couldn't find much information about Encryption in transit between DBConnect and AWS RDS Oracle. If anybody have an...
by ID_SplunkUser Path Finder in Splunk Search 12-02-2018
0 0
0
0
Kwip
Hi All, I am using a form where I will get input for one field and produce results using it. The input may contain w...
by Kwip Contributor in Splunk Search 12-02-2018
0 3
0
3
tb5821
BASE SEARCH ... | eval Processed_time=_time | streamstats current=false window=500 last(count) as prev_c...
by tb5821 Communicator in Splunk Search 12-02-2018
0 0
0
0
sajithpm101
Need to implement a bar chart inside Splunk. How to add bar chat inside splunk table. how to do it?
by sajithpm101 New Member in Splunk Search 12-02-2018
0 1
0
1
ddrillic
As we build an entire infrastructure around field extractions, we see all these exceptions, where some of the events ...
by ddrillic Ultra Champion in Splunk Search 12-02-2018
0 2
0
2
DEAD_BEEF
I have network logs and sometimes the DNS name is there, and sometimes it isn't. I am struggling to create a simple ...
by DEAD_BEEF Builder in Splunk Search 12-02-2018
0 2
0
2
DigiAngel
I have a simple field extraction for postfix: (?=[^C]*(?:Client host rejected|C.*Client host rejected))^(?:[^\[\n]*\...
by DigiAngel New Member in Splunk Search 12-01-2018
0 12
0
12
tb5821
I want to calculate the average time between updates for my data — I.E: on average, how often is this data changing? ...
by tb5821 Communicator in Splunk Search 12-01-2018
0 7
0
7
HenryFitzerald
ISSUE I have two-drop down boxes with a 1 –many relationship with tokens “service family” and “feature” as below. A...
by HenryFitzerald New Member in Splunk Search 12-01-2018
0 3
0
3
atyshke1
Hi All, I have two UF agents on the servers. One of them installed through Windows Installer, the second I unpackeged...
by atyshke1 Path Finder in Splunk Search 11-30-2018
0 7
0
7
msmullinax
Can’t figure out how to display a percentage in another column grouped by its total count per ‘Code’ only. For in...
by msmullinax New Member in Splunk Search 11-30-2018
0 11
0
11
orinciog
Hello! I have an index with events that have a status field. They come in the index in real time. I have a dashboar...
by orinciog New Member in Splunk Search 11-30-2018
0 4
0
4
Get Updates on the Splunk Community!

What’s New in Splunk AI: Volume 02

Welcome to the second edition of “What’s New in Splunk AI” where we look at the latest and greatest updates, ...

Splunk App Dev Quarterly Roundup: AI, Agents, and Innovation!

Another quarter, another wave of innovation. From complex integrations to pushing the limits ...

Value Insights: Now Generally Available in the CMC

Organizations are under pressure to move faster, control cost, expand AI adoption, and prove value with more ...
Top Solution Authors