Splunk Search

Splunk Search
Community Activity
dhavamanis
Need your help, We have this below format of log and need to assign sourcetype to extract the fields, can you please...
by dhavamanis Builder in Splunk Search 11-06-2018
0 4
0
4
Akumar294
Hello Guys, I have a search in which i am using different join commands(4 join commands) and finally at the end, i w...
by Akumar294 Path Finder in Splunk Search 11-06-2018
0 2
0
2
WXY
I want to use rex to get a field value. Now I have a field named URL Some data such as : http://10.2.3.44:8080 http...
by WXY Path Finder in Splunk Search 11-06-2018
0 1
0
1
HenryFitzerald
Hi, Could anyone assist, thanks. I have two tokens values that vary depending on chosen drop down box but are all i...
by HenryFitzerald New Member in Splunk Search 11-06-2018
0 6
0
6
WXY
Hi. I want to get a field. Now this field named location_code contains "/" such as "/home/name/p" I want to repl...
by WXY Path Finder in Splunk Search 11-06-2018
0 2
0
2
Moogz
For example, if i have a username of bsmith843 in a field returned by one search, and bsmiths845 as a field from anot...
by Moogz Splunk Employee Splunk Employee in Splunk Search 11-06-2018
3 5
3
5
Rajkumarkbm2
Code1 | Descr | Code2 | Descr2 |Level 123 | ABCD | 987 | ZYX1 | level1 456 | EFGH ...
by Rajkumarkbm2 Explorer in Splunk Search 11-06-2018
0 1
0
1
jackstephenson9
I'm trying to sort smartsheets by certain combinations of row/column values. If I remove one of the 'foreach' blocks,...
by jackstephenson9 New Member in Splunk Search 11-06-2018
0 2
0
2
jaredlaney
I'm looking for ideas on ways to make Splunk searches more modular and readable. Yes. I just inherited some dashboa...
by jaredlaney Contributor in Splunk Search 11-06-2018
0 2
0
2
adamsmith47
I have a question for someone who's much better at JS and CSS than I am. I'm looking to place a data bar within a ta...
by adamsmith47 Communicator in Splunk Search 11-06-2018
1 6
1
6
Callumfranks
Hello, I am trying to specify a relative time range for a specific field in my search rather than the "_time" field ...
by Callumfranks Engager in Splunk Search 11-06-2018
0 1
0
1
rbrisseyii
Hello, All our servers should have more than 2 apps installed. We run this report for a list of systems missing apps...
by rbrisseyii Explorer in Splunk Search 11-06-2018
0 1
0
1
bjoukhadar
Hi all, I'm trying to do something like this: http://blogs.splunk.com/2014/01/29/add-a-tooltip-to-simple-xml-tables...
by bjoukhadar New Member in Splunk Search 11-06-2018
0 1
0
1
ryan_t_gavin
In Splunk 7.1.2, when searching, it will suggest terms that have been indexed in the past. I have deleted some data, ...
by ryan_t_gavin New Member in Splunk Search 11-06-2018
0 2
0
2
dewoodruff
Searches with lookups are failing in our environment. I have created a lookup file called dt1.csv and a lookup defini...
by dewoodruff Path Finder in Splunk Search 11-06-2018
0 15
0
15
lhanich1
I have googled and searched my little heart out, but I am unsure if I am querying using best practice or if this woul...
by lhanich1 Path Finder in Splunk Search 11-06-2018
0 2
0
2
silverlink34
Here is ALL of the data that is actually in the logged transaction: Nov 1 15:41:18 mail qmail: 1541101278.677067 new...
by silverlink34 Explorer in Splunk Search 11-06-2018
0 2
0
2
zebu14
Hello, I am trying to do an outer join of two searches. I have 2 server groups (Gateway="opaxvgw1" OR Gateway="opax...
by zebu14 Explorer in Splunk Search 11-06-2018
0 7
0
7
ejeny
Heya, This might be something really simple, but I just can't get my head around how to do it. I'm using Splunk t...
by ejeny Explorer in Splunk Search 11-06-2018
0 6
0
6
darshana2511
I have to check multiple conditions like if Auth = "PASS" and Basc = "PASS" and RReg = "PASS" then result ="PASS" els...
by darshana2511 New Member in Splunk Search 11-06-2018
0 1
0
1
edoardo_vicendo
Hi All, I have some question on the regular expression extraction they can be added in props.conf Supposing I have i...
by edoardo_vicendo Builder in Splunk Search 11-06-2018
0 3
0
3
dannili
I have index =s1 with a field called city, and an uploaded CSV file with fields like "office", "latitude" and "longi...
by dannili Communicator in Splunk Search 11-06-2018
0 2
0
2
jamesvz84
How would I go along extracting fields for the below? The challenge I am seeing is that it seems to be delimited by ...
by jamesvz84 Communicator in Splunk Search 11-05-2018
0 3
0
3
yogevyuval
Hi, I have a custom generating command that queries an external API and yields the results as events. As the API gi...
by yogevyuval Explorer in Splunk Search 11-05-2018
1 2
1
2
ncmouli
I'm looking for a method to merge events based on a common field at index time, not at search time, and I've have alr...
by ncmouli New Member in Splunk Search 11-05-2018
0 1
0
1
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...
Top Solution Authors