Splunk Search

Splunk Search
Community Activity
jip31
Hello In a report, i used the code below in order to search for an error code in my events. But, when a code is fou...
by jip31 Motivator in Splunk Search 10-03-2018
0 2
0
2
alex129
I am doing a search and evaluating count, avg RT based on some URL patterns. Below are the URLs for my category pages...
by alex129 New Member in Splunk Search 10-03-2018
0 8
0
8
jcleary47
I have a search to identify when a particular server activates "hardware mode" and doesn't exit within a certain time...
by jcleary47 Path Finder in Splunk Search 10-03-2018
0 2
0
2
russell120
Hi, I have two lookup files below: masterinventory.csv type make model year storeID keycode...
by russell120 Communicator in Splunk Search 10-03-2018
0 3
0
3
gnoellbn
Hello, I'm trying to figure out a way to extract values where the field has multiple spaces in it. When I do a sim...
by gnoellbn Explorer in Splunk Search 10-03-2018
0 8
0
8
m4sucess
index="index1 sourcetype="sourcetype1" | join deviceId [ search index="index2" sourcetype="sourcetype2" productFamil...
by m4sucess New Member in Splunk Search 10-03-2018
0 7
0
7
lukasz92
Hi, How can I get 'raw' earliest and latest value before doing search? I need the epoch seconds format, so -1d@d co...
by lukasz92 Communicator in Splunk Search 10-03-2018
1 10
1
10
edwardrose
Hello All I am not sure how to show the row count in my dashboard. I have one panel that searches a list of hosts...
by edwardrose Contributor in Splunk Search 10-03-2018
0 2
0
2
nkchaitanya
Want to capture the latest occurrence of "working_condition_check - status -" which is "Stopped". Please help me in...
by nkchaitanya Explorer in Splunk Search 10-03-2018
0 2
0
2
gcescatto
I have the following JSON, but I'm not really familiar with Splunk's rex function. I tried this command without succe...
by gcescatto New Member in Splunk Search 10-03-2018
0 1
0
1
Shuhei052492
Hi, I would like to know how to calculate the "number of files" field in the table colunm of "Files & directories",w...
by Shuhei052492 Path Finder in Splunk Search 10-03-2018
0 0
0
0
hartcl1
I have data that looks like this; When I perform my search the data returned by Splunk looks like this on the dashbo...
by hartcl1 Explorer in Splunk Search 10-02-2018
0 2
0
2
pretzel2
I can search for events and run stats count by host. And I can run a search of distinct number of hosts. I want t...
by pretzel2 Path Finder in Splunk Search 10-02-2018
0 8
0
8
Skins
Hi, Is there a way to search for what searches have been run over a period of time and by who - preferably listing t...
by Skins Path Finder in Splunk Search 10-02-2018
0 2
0
2
hoerberm
Hi, I need your help, I have a search like this index=test sourcetype=XY | stats count(Field1) AS f1 by action=...
by hoerberm New Member in Splunk Search 10-02-2018
0 4
0
4
m4sucess
index="index1" sourcetype=show_command | join id [ search index="index2" sourcetype=software_data ] | sort _time | ...
by m4sucess New Member in Splunk Search 10-02-2018
0 3
0
3
josedgaravito
Hi, I have a CSV file with the following structure: NAME DiskSerial ProcSerial ...
by josedgaravito New Member in Splunk Search 10-02-2018
0 1
0
1
Shashank_87
Hi, I need to join my query with a lookup which contains a field called username. I need to get the users who — exi...
by Shashank_87 Explorer in Splunk Search 10-02-2018
0 1
0
1
harishnpandey
Hi , May I please get some help on extracting 1) IP only 2) IP and corresponding port together Connection termin...
by harishnpandey Explorer in Splunk Search 10-02-2018
0 4
0
4
zaynaly
This successfully shows a combined table with users that are in Table1 and Table2. However, I want to show all users ...
by zaynaly Explorer in Splunk Search 10-02-2018
0 3
0
3
alex_kh
Hello everybody, i want to count how often does a specific pair of src-dest appear... something like src, dest, co...
by alex_kh Explorer in Splunk Search 10-02-2018
0 1
0
1
shayhibah
I have a dashboard with a chart inside it. The query of the chart is: base_search | eval _time = time| bucket _time...
by shayhibah Path Finder in Splunk Search 10-02-2018
0 5
0
5
gregorymountfor
I'd like to join two searches and run some stats to group the combined result to see how many users change/update bro...
by gregorymountfor Explorer in Splunk Search 10-02-2018
0 0
0
0
LH_SPLUNK
I like to use DATABASES. I connected DBX and made a connection. With the query: | dbxquery query="SELECT * FROM \"XXX...
by LH_SPLUNK Explorer in Splunk Search 10-02-2018
0 1
0
1
avisriv
source="something_source" topic="something_topic1" OR topic="something_topic2" earliest = "-1d" client="cpu1305" | st...
by avisriv New Member in Splunk Search 10-02-2018
0 2
0
2
Get Updates on the Splunk Community!

Splunk App Dev Quarterly Roundup: AI, Agents, and Innovation!

Another quarter, another wave of innovation. From complex integrations to pushing the limits ...

What’s New in Splunk AI: Volume 02

Welcome to the second edition of “What’s New in Splunk AI” where we look at the latest and greatest updates, ...

Value Insights: Now Generally Available in the CMC

Organizations are under pressure to move faster, control cost, expand AI adoption, and prove value with more ...
Top Solution Authors