Splunk Search

Splunk Search
Community Activity
dreeck
Base, How can I combine two log entries that share a common ID when the field name of the ID is different between b...
by dreeck Path Finder in Splunk Search 09-04-2018
0 2
0
2
jbethmont
Hi Splunk'az, I have events composed of 64 key/value pairs that are being extracted into fields at indexing time: ...
by jbethmont Explorer in Splunk Search 09-04-2018
0 6
0
6
jgr_26
Please give a solution to calculate the number of days between two given dates.. Regards Govind.
by jgr_26 Engager in Splunk Search 09-04-2018
0 9
0
9
sangs8788
Hi Below is a query which returns the latency over month by cust_id. Events contain fields as month=April, month=May...
by sangs8788 Communicator in Splunk Search 09-03-2018
0 1
0
1
bishtk
Hi All, Could you please help me here in confirming what would be the output of the below eval command? "eval age =...
by bishtk Communicator in Splunk Search 09-03-2018
0 7
0
7
sajjadkernel
I am getting many errors while just writing keyword error when searched from a single log file like Retrying connecti...
by sajjadkernel Engager in Splunk Search 09-03-2018
0 3
0
3
anantdeshpande
hello, Short background.. One of the application populates some ids for deletion of multiple types like type A, B...
by anantdeshpande Path Finder in Splunk Search 09-03-2018
0 0
0
0
tonniea
We have a search with some subsearches that runs for about 40 seconds. "This search has completed and has returned 1...
by tonniea Explorer in Splunk Search 09-03-2018
1 0
1
0
RiccardoV
Hi, I have a JSChart like this and I want to set a max width for graph's column. I want to avoid this huge column whe...
by RiccardoV Communicator in Splunk Search 09-02-2018
3 6
3
6
codymoore
We had a user log in remotely either with ESXI, with a VM, with Remote Desktop or with the command prompt using SSH. ...
by codymoore New Member in Splunk Search 09-02-2018
0 2
0
2
shayhibah
I would like to create one column with labels that should not be changed. For example: column title: my_own first r...
by shayhibah Path Finder in Splunk Search 09-02-2018
0 3
0
3
svchnik
How to count the number of events by types that occurred during each period of time (for example, yesterday and the d...
by svchnik New Member in Splunk Search 09-02-2018
0 2
0
2
rtev
Today, I noticed that, when performing a basic search, the events are not sorted chronologically. Additionally, not a...
by rtev Path Finder in Splunk Search 09-01-2018
1 8
1
8
samsam48
I have some unstructured events, and I've been using rex field to create a variety of fields to better organize ever...
by samsam48 Explorer in Splunk Search 08-31-2018
0 5
0
5
nqjpm
index=foo | eval Compliant=case(like(AppVersion,"14.12%"), "OK", like(AppVersion,"14.11%"),"OK" , like(AppVersion,"14...
by nqjpm Path Finder in Splunk Search 08-31-2018
0 2
0
2
bravosec1
Hello Splunker> I would like to convert my old correlation search which used the join function below:- index=main sou...
by bravosec1 New Member in Splunk Search 08-31-2018
0 3
0
3
mikclrk
G'Day I've got some data I'm pulling out of some events with a search: HOUR - Two digit hour of the day PROCESS - N...
by mikclrk Explorer in Splunk Search 08-31-2018
1 3
1
3
Rocky31
Firstly, i am trying to separate 1) cachekey=false in one query and 2) cachekey=true in another query and 3) with bot...
by Rocky31 Path Finder in Splunk Search 08-31-2018
0 2
0
2
ameyapatil29
Hello, I am new to using rex and extract. I am trying to come up with a regex to extract certain data from a field o...
by ameyapatil29 Explorer in Splunk Search 08-31-2018
0 3
0
3
saqibhome
I would like to turn the seach terms into a extract field at the time of search. For e.g. "search term 1" OR "search...
by saqibhome Explorer in Splunk Search 08-31-2018
0 4
0
4
lyds
Hello, I have different sets of events that are linked together and correspond to the same process. Field1: One, Tw...
by lyds Explorer in Splunk Search 08-31-2018
0 2
0
2
lyds
Hello, I want to create a new field that will take the value of other fields depending of which one is filled. For e...
by lyds Explorer in Splunk Search 08-31-2018
0 9
0
9
JRamirezEnosys
Hi everyone, I've been trying to add results from 2 different indexes using search after the pipe but it doesn't seem...
by JRamirezEnosys Explorer in Splunk Search 08-31-2018
0 5
0
5
rparadinha
I have logs from a SIP proxy server and I'm trying to get metrics from SIP transactions metrics from a SIP proxy ser...
by rparadinha Explorer in Splunk Search 08-31-2018
0 2
0
2
skelly99
Hi - I have a dataset which contains two scan dates fields per server. There are 50000 events in the dataset, one e...
by skelly99 Explorer in Splunk Search 08-31-2018
1 2
1
2
Get Updates on the Splunk Community!

New Year. New Skills. New Course Releases from Splunk Education

A new year often inspires reflection—and reinvention. Whether your goals include strengthening your security ...

Splunk and TLS: It doesn't have to be too hard

Overview Creating a TLS cert for Splunk usage is pretty much standard openssl.  To make life better, use an ...

Faster Insights with AI, Streamlined Cloud-Native Operations, and More New Lantern ...

Splunk Lantern is a Splunk customer success center that provides practical guidance from Splunk experts on key ...
Top Solution Authors