Splunk Search

Splunk Search
Community Activity
jiaqya
I have universal forwarder data which I access using the below query, but the fields are coming in each row. I want ...
by jiaqya Builder in Splunk Search 10-11-2018
0 5
0
5
maverick
I'm getting an error in Splunk GUI that says my events are exceeding a 500 max limit. How do you tweak Splunk to disp...
by maverick Splunk Employee Splunk Employee in Splunk Search 10-10-2018
3 4
3
4
jip31
hello, With the code below, i calculate a % trend between values. When the result of the trend is negative, a negati...
by jip31 Motivator in Splunk Search 10-10-2018
0 6
0
6
roseneric4
Is it possible to use Splunk as search engine that uses a wiki server and SharePoint as its data sources? It must sea...
by roseneric4 Engager in Splunk Search 10-10-2018
0 1
0
1
kunal0311
Hi All, I have a requirement to email Splunk results. The problem is some Splunk results are in table format and some...
by kunal0311 New Member in Splunk Search 10-10-2018
0 5
0
5
johnward4
How do you calculate the difference between two specific values in the same field and return that value in a percent ...
by johnward4 Communicator in Splunk Search 10-10-2018
0 3
0
3
maryamchar
I want a table that shows my hosts, sources, source types, and indexes with some data feeds. How do I approach that? ...
by maryamchar Explorer in Splunk Search 10-10-2018
0 2
0
2
mallempatisreed
hi All, On one of our servers, we recently faced issues with file forwarding. Upon checking in internal logs, we sa...
by mallempatisreed Explorer in Splunk Search 10-10-2018
0 2
0
2
Cuyose
I have an API input that returns a JSON object containing a nested element with multiple dynamically named columns, w...
by Cuyose Builder in Splunk Search 10-10-2018
0 2
0
2
tracieed_nord
Doing a search on CLI with time range modifiers does not seem to work. I have tried earliest_time/latest_time and in...
by tracieed_nord Explorer in Splunk Search 10-10-2018
0 3
0
3
aatha89
My question is what is the difference between an index time extraction and a search time extraction? Can anyone expla...
by aatha89 Explorer in Splunk Search 10-10-2018
1 5
1
5
reed_kelly
I would like something like a stats command that groups events only if they form a contiguous run of a particular fie...
by reed_kelly Contributor in Splunk Search 10-10-2018
1 2
1
2
sgoodman26
We have been trying to create a search for AWS:Simple Email Services to locate any Bounce Back emails that come in; S...
by sgoodman26 Explorer in Splunk Search 10-10-2018
0 5
0
5
ColinJacksonPS
I'm trying to set up a search for when a user disables their 2FA vs when IT disables it for them. I have the User A...
by ColinJacksonPS Path Finder in Splunk Search 10-10-2018
0 8
0
8
atyshke1
Hello, I am using two searches for seeking two windows events 4732 and 4733. I want to print into a new table events...
by atyshke1 Path Finder in Splunk Search 10-10-2018
0 11
0
11
rolly_deguzman
Please could you help me on the working example with dataset using arules command? i'm planning to use this in my ma...
by rolly_deguzman New Member in Splunk Search 10-10-2018
0 0
0
0
chintan_shah
Hi, I have the data in the below format i.e i have calculated base on Type A,B,C per month and the data looks like J...
by chintan_shah Path Finder in Splunk Search 10-10-2018
0 4
0
4
kokanne
I want to find the ratio of failures and successful logins. Therefore I use one field in a data model, called Authent...
by kokanne Communicator in Splunk Search 10-10-2018
0 8
0
8
nick405060
Scoured a ton of related questions, but none exactly like this have been posted yet as far as I can tell. I have an ...
by nick405060 Motivator in Splunk Search 10-09-2018
0 2
0
2
pratapbhanu2047
I am trying to convert values from rows into columns. below is a example data ServerName Counter Value server1 %_P...
by pratapbhanu2047 Engager in Splunk Search 10-09-2018
0 8
0
8
splunk2018a
I am trying to show two things in one graph: 1) bar chart of the count of events for last 24 hours in hourly interval...
by splunk2018a New Member in Splunk Search 10-09-2018
0 2
0
2
kakarsu
Hi Guys, I am pretty new to regex and need help with getting repeated values from one event (record). Splunk is sho...
by kakarsu New Member in Splunk Search 10-09-2018
0 3
0
3
paimonsoror
Having some strange behavior with base searches right now. For example, we have events like this flowing into Splunk...
by paimonsoror Builder in Splunk Search 10-09-2018
0 3
0
3
rajyah
Good day sirs! I have two different indexes with different fields but same value-ish. index=a: MTH=SEPTEMBER index=...
by rajyah Communicator in Splunk Search 10-09-2018
0 3
0
3
zacksoft
My query ends with | stats count(_raw) by user I want the values to be displayed in descending order based on the...
by zacksoft Contributor in Splunk Search 10-09-2018
0 2
0
2
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...