Splunk Search

Splunk Search
Community Activity
damucka
Hello, I need help with regex. I have the following string under the Tracefile variable in my search: /usr/sap...
by damucka Builder in Splunk Search 11-13-2018
0 1
0
1
jiaqya
i have an input where I choose some values, based on which i want another input value to be calculated. Can I do an ...
by jiaqya Builder in Splunk Search 11-12-2018
0 2
0
2
dcresido
Hi everyone, Good day! I would like to ask about my search query below. index="myIndex" source IN(*MyLogs*) host=s...
by dcresido New Member in Splunk Search 11-12-2018
0 0
0
0
jacqu3sy
Hi, I have a lookup with 2 fields, (device and IP) either of which can be used to log in to Splunk as the 'host' fie...
by jacqu3sy Path Finder in Splunk Search 11-12-2018
0 1
0
1
sabaKhadivi
As I extract a field with regex, and it has finished successful, why can't I find my created field in the field side ...
by sabaKhadivi Path Finder in Splunk Search 11-12-2018
0 2
0
2
princeali
Query One: One that is exclusive of Server4 in Index1 based of the hosts in Index2. I.e. based on the Index2 hosts, ...
by princeali Engager in Splunk Search 11-12-2018
0 4
0
4
lukepatrick
I am trying to sort the column headers of a chart (dates) so they appear with the most recent date on the far left. I...
by lukepatrick Explorer in Splunk Search 11-12-2018
0 0
0
0
paimonsoror
Hi Folks; So getting a very bizaare issue here after our upgrade to 7.2 index="app_rocket_dxs" sourcetype="fluentd_...
by paimonsoror Builder in Splunk Search 11-12-2018
0 4
0
4
rajeshad45
I want to get metrics from events which occur between 2 events(eg: Job Start, Job end). This job event runs every 1h...
by rajeshad45 Engager in Splunk Search 11-12-2018
1 1
1
1
jonaspereira
I have a Splunk local installation that is having some strange behavior. The search is filtered by negative field ext...
by jonaspereira New Member in Splunk Search 11-12-2018
0 1
0
1
jacqu3sy
Hi, I have a lookup file containing hostnames and IP addresses, either of which can be logged in splunk against the ...
by jacqu3sy Path Finder in Splunk Search 11-12-2018
0 0
0
0
graether
Hello, I applied successfully the tool at github Customizing-Maxmind-IP-Geo-DB-for-Internal-Networks https://gith...
by graether Path Finder in Splunk Search 11-12-2018
0 6
0
6
asplunk789
Hi , How to get the alphanumeric string from below data. inputs : ABCD-47440c7534d1a13d7d462860-90d2aa5bb3b20184-1...
by asplunk789 Loves-to-Learn Everything in Splunk Search 11-12-2018
0 1
0
1
samkass
Below, I have a chart being created which is supposed to show how many times we see each tag we find in a "tags" arra...
by samkass New Member in Splunk Search 11-11-2018
0 2
0
2
ewanbrown
Hi, I have a nested array and I want to compare values across I've a query that works, apart from when a value is ...
by ewanbrown Path Finder in Splunk Search 11-11-2018
1 1
1
1
HattrickNZ
This is my search to simulate the data i need to illustrate: | makeresults | eval data = " 1-Sep 7820592; 2...
by HattrickNZ Motivator in Splunk Search 11-11-2018
0 0
0
0
kozanic_FF
I'm trying to build an alert that triggers when a file is moved to an Error folder within the system we are monitorin...
by kozanic_FF Path Finder in Splunk Search 11-11-2018
0 7
0
7
danesh_shah
i require some assistance in my search query where i need to search a mail log to extract the highest recipients by m...
by danesh_shah New Member in Splunk Search 11-10-2018
0 5
0
5
robertlynch2020
HI I have the following tstat command that takes ~30 seconds (dispatch.localSearch) is the main slowness . I have b...
by robertlynch2020 Influencer in Splunk Search 11-10-2018
0 16
0
16
moizmmz
I am running the following query: index=uplynk slice_played | rex field=_raw "^(?<date>\S*)\s*(?<time>\S*)\s*(?<slic...
by moizmmz Path Finder in Splunk Search 11-09-2018
0 7
0
7
responsys_cm
Here is my props.conf for the Qualys vulnerability data: [qualys:hostDetection] LOOKUP-2_qualys_nvd_lookup = nvd_db_...
by responsys_cm Builder in Splunk Search 11-09-2018
0 3
0
3
moizmmz
Hi, I have a weird problem. I have a field called 'playerUserAgent' which returns the following sample of values: ...
by moizmmz Path Finder in Splunk Search 11-09-2018
0 7
0
7
Log_wrangler
So I have correlated email events before where there was a UID defined as a field for all transactions of a unique em...
by Log_wrangler Builder in Splunk Search 11-09-2018
0 3
0
3
luckyman80
Hi Splunk Community, I have a simple query which pulls request counts in per node. sourcetype=test-log New Line | ...
by luckyman80 Path Finder in Splunk Search 11-09-2018
0 2
0
2
_smp_
I have kind of a silly question that I am embarrassed to admit has stumped me for a little while. I have a small li...
by _smp_ Builder in Splunk Search 11-09-2018
0 3
0
3
Get Updates on the Splunk Community!

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...

Developer Spotlight with Mika Borner

From Hackathon Winner to Enterprise Leader    Mika Borner, CEO and Founder of Datapunctum AG, has been ...

Continue Your Federation Journey: Join Session 3 of the Bootcamp Series

To help practitioners build a stronger foundation, we launched the Data Management & Federation ...
Top Solution Authors