Splunk Search

Splunk Search
Community Activity
MartinMcNutt
We are currently using Event 45 to calculate the average load for Outlook: Microsoft KB & Sample Data What we have f...
by MartinMcNutt Communicator in Splunk Search 09-26-2018
0 6
0
6
kumagaur
I have one query where I want to get the results in terms of installed,uninstalled and exception machines. We are ge...
by kumagaur New Member in Splunk Search 09-26-2018
0 5
0
5
kvr
How do I apply $ symbol for Y-axis values in Splunk column Chart? In the dashboard visualization, we are trying to a...
by kvr New Member in Splunk Search 09-26-2018
0 2
0
2
ALLIACOM
hello every body , How to search to correlate there use case please : Detection of access to basic hash files ...
by ALLIACOM New Member in Splunk Search 09-25-2018
0 1
0
1
vinaykata
Hi, I have a base search and I wanted to replace inputlookup instead of host=* in the below search index=windows (s...
by vinaykata Path Finder in Splunk Search 09-25-2018
0 2
0
2
ruth091
I have an index="summary" where it captures both success connections and error connections. I need to get the connec...
by ruth091 New Member in Splunk Search 09-25-2018
0 1
0
1
Dohrendorf_Cons
Hi all, I need to chart a series of time(epoch) values over time. So basically, I want to show Dates on both the X a...
by Dohrendorf_Cons Path Finder in Splunk Search 09-25-2018
1 5
1
5
gbwilson
I'm trying to compare values between two fields from two separate indexes. I only want values returned where there i...
by gbwilson Path Finder in Splunk Search 09-25-2018
0 3
0
3
ronak
Hi Can you share sample scripts or configuration setting for me to get data from elastic search in an incremental m...
by ronak Path Finder in Splunk Search 09-25-2018
0 8
0
8
pamcarvalho
Hey! We have here logs from Elastic Search, we want to be able to import them to Splunk. Any ideas on this? Thanks i...
by pamcarvalho Path Finder in Splunk Search 09-25-2018
0 2
0
2
sdurao
Hi We have log from an Elasticsearch syslog. And we want to import these logs into Splunk. How can i do that ? ...
by sdurao Engager in Splunk Search 09-25-2018
0 1
0
1
ant_ony10
Hi, We have 2 separate stacks 1) Splunk forwarder with Splunk 2) ELK stack We want to understand if there is any w...
by ant_ony10 Explorer in Splunk Search 09-25-2018
2 11
2
11
umdterps02
I have an indexed source from tanium and an inputlookup from nessus. I want to run a search that if the MAC Address m...
by umdterps02 Path Finder in Splunk Search 09-25-2018
0 5
0
5
hoyomi
What I want to achieve is to extract surrounding log lines by thread ID, which is found on the line where the keyword...
by hoyomi Explorer in Splunk Search 09-25-2018
0 3
0
3
cboonyan
Some of my logs are generated via automatic jobs and I want to filter them away. What is the best way to filter away ...
by cboonyan New Member in Splunk Search 09-25-2018
0 3
0
3
hyperscaleau
I need to return the average of the earliest 10 results (OG) in an index and the average of the latest 10 results (FG...
by hyperscaleau Engager in Splunk Search 09-25-2018
1 2
1
2
ratan2257
It might be a very simple answer, however I am not able to find it so far . My splunk query has a field name "Size(...
by ratan2257 New Member in Splunk Search 09-25-2018
0 6
0
6
becksyboy
Hi, I would like to compare 1 week of tabled data to the previous weeks and calculate the percentage difference for ...
by becksyboy Contributor in Splunk Search 09-25-2018
0 1
0
1
bjaylsu
Can we track CPU usage of users via splunk? We have users that are running lots of transactions. We are looking to de...
by bjaylsu New Member in Splunk Search 09-25-2018
0 3
0
3
kmmanikandan
i have two search results like search1 produce table with 15 columns and search2 produce table with the exactly same ...
by kmmanikandan Explorer in Splunk Search 09-24-2018
0 6
0
6
KaneKennedyNHSD
Hi, Could anyone help me get further with this please? I have a list of UK post codes in my event data. They will a...
by KaneKennedyNHSD New Member in Splunk Search 09-24-2018
0 3
0
3
karthi2809
i have two source A and B Log A: REQUEST_TS="2018-02-16 01:20:05.303" REPLY_TS="2018-02-16 01:20:05.53" SENDER_ID=R...
by karthi2809 Builder in Splunk Search 09-24-2018
0 3
0
3
JoshuaJohn
I want to see devices that do not have a specific value. I am organizing my devices by Mac Address, and I am trying t...
by JoshuaJohn Contributor in Splunk Search 09-24-2018
0 5
0
5
jip31
hello In the file attached, i need to do a line break not after a format date like "06/09/2018 - 14:21:24" as its ac...
by jip31 Motivator in Splunk Search 09-24-2018
0 7
0
7
nacartwright
Newbie here...I have an index of data that represents calls. Each event has a start_time and duration. I've been aske...
by nacartwright New Member in Splunk Search 09-24-2018
0 5
0
5
Get Updates on the Splunk Community!

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...