Splunk Search

Splunk Search
Community Activity
HenryFitzerald
Hi, Could anyone assist, thanks. I have two tokens values that vary depending on chosen drop down box but are all i...
by HenryFitzerald New Member in Splunk Search 11-06-2018
0 6
0
6
WXY
Hi. I want to get a field. Now this field named location_code contains "/" such as "/home/name/p" I want to repl...
by WXY Path Finder in Splunk Search 11-06-2018
0 2
0
2
Moogz
For example, if i have a username of bsmith843 in a field returned by one search, and bsmiths845 as a field from anot...
by Moogz Splunk Employee Splunk Employee in Splunk Search 11-06-2018
3 5
3
5
Rajkumarkbm2
Code1 | Descr | Code2 | Descr2 |Level 123 | ABCD | 987 | ZYX1 | level1 456 | EFGH ...
by Rajkumarkbm2 Explorer in Splunk Search 11-06-2018
0 1
0
1
jackstephenson9
I'm trying to sort smartsheets by certain combinations of row/column values. If I remove one of the 'foreach' blocks,...
by jackstephenson9 New Member in Splunk Search 11-06-2018
0 2
0
2
jaredlaney
I'm looking for ideas on ways to make Splunk searches more modular and readable. Yes. I just inherited some dashboa...
by jaredlaney Contributor in Splunk Search 11-06-2018
0 2
0
2
adamsmith47
I have a question for someone who's much better at JS and CSS than I am. I'm looking to place a data bar within a ta...
by adamsmith47 Communicator in Splunk Search 11-06-2018
1 6
1
6
Callumfranks
Hello, I am trying to specify a relative time range for a specific field in my search rather than the "_time" field ...
by Callumfranks Engager in Splunk Search 11-06-2018
0 1
0
1
rbrisseyii
Hello, All our servers should have more than 2 apps installed. We run this report for a list of systems missing apps...
by rbrisseyii Explorer in Splunk Search 11-06-2018
0 1
0
1
bjoukhadar
Hi all, I'm trying to do something like this: http://blogs.splunk.com/2014/01/29/add-a-tooltip-to-simple-xml-tables...
by bjoukhadar New Member in Splunk Search 11-06-2018
0 1
0
1
ryan_t_gavin
In Splunk 7.1.2, when searching, it will suggest terms that have been indexed in the past. I have deleted some data, ...
by ryan_t_gavin New Member in Splunk Search 11-06-2018
0 2
0
2
dewoodruff
Searches with lookups are failing in our environment. I have created a lookup file called dt1.csv and a lookup defini...
by dewoodruff Path Finder in Splunk Search 11-06-2018
0 15
0
15
lhanich1
I have googled and searched my little heart out, but I am unsure if I am querying using best practice or if this woul...
by lhanich1 Path Finder in Splunk Search 11-06-2018
0 2
0
2
silverlink34
Here is ALL of the data that is actually in the logged transaction: Nov 1 15:41:18 mail qmail: 1541101278.677067 new...
by silverlink34 Explorer in Splunk Search 11-06-2018
0 2
0
2
zebu14
Hello, I am trying to do an outer join of two searches. I have 2 server groups (Gateway="opaxvgw1" OR Gateway="opax...
by zebu14 Explorer in Splunk Search 11-06-2018
0 7
0
7
ejeny
Heya, This might be something really simple, but I just can't get my head around how to do it. I'm using Splunk t...
by ejeny Explorer in Splunk Search 11-06-2018
0 6
0
6
darshana2511
I have to check multiple conditions like if Auth = "PASS" and Basc = "PASS" and RReg = "PASS" then result ="PASS" els...
by darshana2511 New Member in Splunk Search 11-06-2018
0 1
0
1
edoardo_vicendo
Hi All, I have some question on the regular expression extraction they can be added in props.conf Supposing I have i...
by edoardo_vicendo Builder in Splunk Search 11-06-2018
0 3
0
3
dannili
I have index =s1 with a field called city, and an uploaded CSV file with fields like "office", "latitude" and "longi...
by dannili Communicator in Splunk Search 11-06-2018
0 2
0
2
jamesvz84
How would I go along extracting fields for the below? The challenge I am seeing is that it seems to be delimited by ...
by jamesvz84 Communicator in Splunk Search 11-05-2018
0 3
0
3
yogevyuval
Hi, I have a custom generating command that queries an external API and yields the results as events. As the API gi...
by yogevyuval Explorer in Splunk Search 11-05-2018
1 2
1
2
ncmouli
I'm looking for a method to merge events based on a common field at index time, not at search time, and I've have alr...
by ncmouli New Member in Splunk Search 11-05-2018
0 1
0
1
jonathanoberhau
I have a Search that looks at some XML responses from an API and should create a time chart by the count of each type...
by jonathanoberhau New Member in Splunk Search 11-05-2018
0 2
0
2
jcart11entergy
I am trying to compare two different results using subsearch. Both searches are using tstats. I am wanting the tsta...
by jcart11entergy Engager in Splunk Search 11-05-2018
1 0
1
0
R_B
Hi everyone, I have a couple questions about using the eventcount command... 1.) I noticed that if you set summariz...
by R_B Path Finder in Splunk Search 11-05-2018
0 2
0
2
Get Updates on the Splunk Community!

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...
Top Solution Authors