Splunk Search

Splunk Search
Community Activity
bobbieluturner
I have this query that uses the timewrap command that I want to insert a subsearch instead of a 'fixed' value ( 193 )...
by bobbieluturner New Member in Splunk Search 10-18-2018
0 3
0
3
leninkp3005
Folks !! I'm struggling with removing empty rows from the result fields in my results. In my results, i've got many ...
by leninkp3005 Explorer in Splunk Search 10-18-2018
1 5
1
5
jakewhittet
I have some ironport logs that I am trying to tie together within Splunk without much success. Currently I have a se...
by jakewhittet Explorer in Splunk Search 10-18-2018
0 0
0
0
jakewhittet
I have some ironport logs that I am trying to tie together within Splunk without much success. Currently I have a se...
by jakewhittet Explorer in Splunk Search 10-18-2018
0 0
0
0
ibrahima
is there a search to find out which users (Pulling username from AD on windows) were logged on to a machine at a cert...
by ibrahima New Member in Splunk Search 10-18-2018
0 0
0
0
moorvogi
i'm using a NIFI flow to send in 3 values (host, message, moreData). I want to use host passed in from nifi as a JSON...
by moorvogi Path Finder in Splunk Search 10-18-2018
0 0
0
0
bharathkumarnec
Hi All, Context X Y Z ABC 98 97 67 DEF 50 45 23 GHI 3 2 1 So, if Context is ABC, i have to apply color coding for ...
by bharathkumarnec Contributor in Splunk Search 10-18-2018
0 2
0
2
thezen
I am looking to retrieve the following a field from a lookup table depending on the lookup result of two fields as fo...
by thezen Explorer in Splunk Search 10-18-2018
0 5
0
5
abhishekgandhe
Hi, I have to find the value of true or false from the following string in logfile. Below are 2 strings with either ...
by abhishekgandhe Explorer in Splunk Search 10-18-2018
0 6
0
6
mfritsch
Hi I have a lookup table containg the host name and a software version hostlookup.csv hostname,version hostA,2 hos...
by mfritsch New Member in Splunk Search 10-18-2018
0 3
0
3
evkuzin
I try to get from iis logs top source IP by requests with the number of requests in every 5 seconds. If I just try to...
by evkuzin New Member in Splunk Search 10-18-2018
0 2
0
2
arrangineni
I need am trying to find the maximum value of a field(Peak value and time at which it happened everyday) based on a ...
by arrangineni Path Finder in Splunk Search 10-17-2018
0 1
0
1
matthewg
I have multiple events such as below: Key points here: New values of event_type may be added randomly and the sched...
by matthewg Explorer in Splunk Search 10-17-2018
0 2
0
2
heskez
Hi there, when I run this search: index=* source=stream:Splunk_IP | rex field=src_ip "(?<src1>.*)\.(?<src2>.*)\.(?<...
by heskez Engager in Splunk Search 10-17-2018
0 7
0
7
stevennoble
I'm trying to figure out how I can format my logs such that splunk does not get confused by an escaped quote. I'm cur...
by stevennoble Explorer in Splunk Search 10-17-2018
3 5
3
5
gnanaraj_mcc
How do i compare my raw data volume to the indexed data volume for a specific source type? Can someone help with thi...
by gnanaraj_mcc Loves-to-Learn Lots in Splunk Search 10-17-2018
0 1
0
1
josephinemho
I am trying to look up a server (using an input field - $field1$) in my dashboard and pull the most recent alerts for...
by josephinemho Path Finder in Splunk Search 10-17-2018
1 0
1
0
garryclarke
I have a dashboard where I want to use a textbox input to add data to a lookup file. I have managed to get this to ...
by garryclarke Path Finder in Splunk Search 10-17-2018
1 6
1
6
shubhambhagat02
Additional backup items: /db/cos7j.dump.Z /db/PSCSS.dump.Z /db/imqdb0152.dump.Z I want to extract 0152 from this.
by shubhambhagat02 New Member in Splunk Search 10-17-2018
0 10
0
10
chris94089
Greetings, So, I want to use the tstats command. It's super fast and efficient. But not if it's going to remove im...
by chris94089 Path Finder in Splunk Search 10-17-2018
1 2
1
2
hbacbs
Hi, I would like to execute a search, where several non-overlapping time ranges are excluded. An exclusion time rang...
by hbacbs Explorer in Splunk Search 10-17-2018
2 2
2
2
rainerzufall
Hello, We added several fields with the _meta keyword in inputs.conf. When we search for the fields with "field::val...
by rainerzufall Path Finder in Splunk Search 10-17-2018
0 8
0
8
ReddySk
Hello, I would like to ask you how to rename field name like "${http.headers.ClientSide}". Such names are generate...
by ReddySk Explorer in Splunk Search 10-17-2018
0 6
0
6
hok2010
Hi! temp=C:\Program Files\SplunkUniversalForwarder\bin\splunk-powershell.exe to... path=C:\Program Files\SplunkUn...
by hok2010 New Member in Splunk Search 10-17-2018
0 2
0
2
svijay30
For some reason, my column graph is showing the time in a 12hr (AM or PM) format, which I do not want. The same query...
by svijay30 Engager in Splunk Search 10-17-2018
1 2
1
2
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...