Splunk Search

Splunk Search
Community Activity
ndsouza25
Hello, Could someone please help me with removing the HTML tags from fields. The data is a few sentences, such as r...
by ndsouza25 New Member in Splunk Search 08-19-2018
0 12
0
12
rajhemant26
Hello everyone. Want to display the output only for the time which crosses 18 months (earliest time)
by rajhemant26 New Member in Splunk Search 08-18-2018
0 2
0
2
bernardchew
Hello I would like to export the Splunk's search and to also display it in Grafana without requiring to use their ow...
by bernardchew New Member in Splunk Search 08-18-2018
0 2
0
2
Earenhart
eventtype=X | iplocation ClientIP | where Country!="United States" | eval bad=if(match(Country,"Brazil|China|Vietnam...
by Earenhart Path Finder in Splunk Search 08-18-2018
0 3
0
3
606866581
Hi,If I try to run this search, the value of my_null_field doesn't change to "?" | makeresults | table _time my_null...
by 606866581 Path Finder in Splunk Search 08-18-2018
1 5
1
5
greg_cox1979
Hi Splunk Gurus, I have an unusual requirement where I need to create two rows from one: A | B | C |D | E to Row ...
by greg_cox1979 New Member in Splunk Search 08-18-2018
0 3
0
3
jcart11entergy
Is there a limitation on the number of search boolean clauses (i.e. OR, AND) within a search string? For example |...
by jcart11entergy Engager in Splunk Search 08-18-2018
0 1
0
1
afulamba
Hi there, Can someone help me with reading the tokenized string and assign the keys to each index retrieved. It is di...
by afulamba Explorer in Splunk Search 08-17-2018
0 5
0
5
BarnesLeo
I have a field that looks something like this in the event viewer: project_sources: [ { scmEvent: { ...
by BarnesLeo Engager in Splunk Search 08-17-2018
0 2
0
2
michaelrosello
I have this data set of data coming in multiple times a day. I want to select all the latest timestamp and the lates...
by michaelrosello Path Finder in Splunk Search 08-17-2018
0 3
0
3
kotig
Hi We have the below data, out of which I wanted to extract specific data from the json format. 06/Feb/2016:16:10:...
by kotig Path Finder in Splunk Search 08-17-2018
2 7
2
7
sushma7
Hi, I have a directory on E drive by name SPLUNK. It has 3 to 4 subdirectories in it and under each subdirectory the...
by sushma7 Path Finder in Splunk Search 08-17-2018
0 8
0
8
ankithnageshshe
Hi Splunkers, Need a help in forming a splunk query. Requirement: Find the time difference (delta1, delta2,delta3.....
by ankithnageshshe Path Finder in Splunk Search 08-17-2018
0 1
0
1
cnoulin
Hello, Could someone explain me the following strange behavior with search With this type of search : sourcetype="...
by cnoulin Explorer in Splunk Search 08-17-2018
0 7
0
7
siddharthmis
I have data like Data: {"code": "abc", "version": "2018.6", "name": "testdata", "group": "QA", "DB": "oracle"} i...
by siddharthmis Explorer in Splunk Search 08-17-2018
0 2
0
2
haind27
Hi guys, I wanna get 2 values in a single value (visualization) as picture. Please help me. Thanks
by haind27 New Member in Splunk Search 08-17-2018
0 1
0
1
morethanyell
Given that my search criteria is this: index=some_index sourcetype=some_sourcetype, is there a shortcut to piping the...
by morethanyell Builder in Splunk Search 08-16-2018
0 3
0
3
srizan
I am trying to make a report with the unique combination of ID, AVER SRV & ZONE. However, since I am getting lots of ...
by srizan Path Finder in Splunk Search 08-16-2018
0 4
0
4
cutmedia
Thanks Splunk for such a great and powerful system. I'm trying to do a scripted deploy using this URL. http://splun...
by cutmedia Engager in Splunk Search 08-16-2018
2 5
2
5
zgoda
Hi all, I am having trouble with data visualizations. Two of my data points are layered on top of each other. I hav...
by zgoda Explorer in Splunk Search 08-16-2018
0 5
0
5
hastym
I have recently started a new role and have been tasked with figuring out some old reports. The creator of the report...
by hastym Explorer in Splunk Search 08-16-2018
0 4
0
4
DataOrg
I want to remove the special character after a number, please help. data: 7.62\x00\x00\x00\x00\x00\x00\x00\x00\x00\...
by DataOrg Builder in Splunk Search 08-16-2018
0 3
0
3
dkaldridge
Ran the simple command below | datamodelsimple External search command 'datamodelsimple' returned error code 1. ...
by dkaldridge Engager in Splunk Search 08-16-2018
0 0
0
0
KJDII
Hello, I am trying to create a report that only looks at the latest events by a sourcetype. The sourcetype is an i...
by KJDII Explorer in Splunk Search 08-16-2018
0 5
0
5
atyshke1
Hello All, I have a file with data: --------------server1 2018-07-----SQL2008-- Number of Success Logins: SOFTPOINTP...
by atyshke1 Path Finder in Splunk Search 08-16-2018
0 15
0
15
Get Updates on the Splunk Community!

Your Feedback. Our Roadmap. Visit the PX Feedback Booth at .conf26

You use Splunk every day, come and help shape what's next.  Save Your Seat: Product-Focused Sessions at ...

Agentic SOC Triage: Investigating Splunk ES Notables with MCP Server and a Local LLM

The Problem: Too Many Alerts, Too Little Context Security operations teams running Splunk Enterprise Security ...

Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas

Watch Now Painting a Clearer Picture: Creating Cross-Domain Visibility with AI Canvas     Do you ever feel ...