| I'm new to REX and trying to extract strings from _raw (which is actually a malformed JSON, so SPATH is not a good op... by LHumberto Explorer in Splunk Search 02-14-2024 0 4 | 0 | 4 | ||
| I have a distributed environment with 2 independent search heads. I run the same search on both, and one shows a fie... by ilhwan Path Finder in Splunk Search 02-14-2024 0 4 | 0 | 4 | ||
| Hello, I am trying to count how many days out of the last 12 months our users logged into two of our servers. And ... by splunktrainingu Communicator in Splunk Search 02-14-2024 0 6 | 0 | 6 | ||
| Hi Splunkers, I would like to pass the label value to the macro based on some condition, when a single value is sel... by smanojkumar Contributor in Splunk Search 02-14-2024 0 1 | 0 | 1 | ||
| I need some help updating the mmdb file for the iplocation command. Ive read the other forum questions regarding this... by Abass42 Communicator in Splunk Search 02-13-2024 0 0 | 0 | 0 | ||
| Hi,I am working my way through some of the splunk courses. I am currently on "working with time".In one of the videos... by sfghjkl New Member in Splunk Search 02-13-2024 0 1 | 0 | 1 | ||
| I am using the below query to merge 2 queries using append. However, I am unable to get the value of the field named ... by NishantKrishna Loves-to-Learn in Splunk Search 02-13-2024 0 7 | 0 | 7 | ||
| hi i would like some help on how to extract the next 5 lines after a keyword where it extracts the full line where th... by thaghost99 Path Finder in Splunk Search 02-13-2024 0 5 | 0 | 5 | ||
| How to extract alphanumeric and numeric values from aline, both are dynamic values<Alphanumeric>_ETC_RFG: play this ... by Arani_Hari Loves-to-Learn Lots in Splunk Search 02-13-2024 0 7 | 0 | 7 | ||
| I have a "cost" for two different indexes that I want to calculate in one and the same SPL. As the "price" is differe... by martinmasif Explorer in Splunk Search 02-13-2024 0 2 | 0 | 2 | ||
| Hi, I created a column chart in Splunk that shows month but will like to also indicate the day of the week for each o... by Strangertinz Path Finder in Splunk Search 02-13-2024 0 6 | 0 | 6 | ||
| I have raw data like: Error=REQUEST ERROR | request is not valid.|","time":"1707622073040" and I want to extract "R... by adamsobczykhsbc Explorer in Splunk Search 02-13-2024 0 5 | 0 | 5 | ||
| I have a number of devices that send logs to Splunk.I want to know when devices stop logging.For this example search:... by iainp New Member in Splunk Search 02-13-2024 0 2 | 0 | 2 | ||
| I created an alert from the search below, and it emails a pdf - is there a way to add the most recent event from each... by mwcentracomm Explorer in Splunk Search 02-12-2024 0 5 | 0 | 5 | ||
| Hi Everyone, I am looking for a little advice, I am currently searching splunk against multiple sets of variables to... by EPitch Observer in Splunk Search 02-12-2024 0 4 | 0 | 4 | ||
| I have a report that lists malware received by email that is part of a dashboard. Some months the list for each perso... by 0p3r4t0r8089 Explorer in Splunk Search 02-12-2024 0 7 | 0 | 7 | ||
| Splunk sirs, I am trying to add a boolean column to my data called 'new_IP_detected' which will tell me whether an an... by marshalll3302 Explorer in Splunk Search 02-12-2024 0 4 | 0 | 4 | ||
| HelloI would like a search to show the last entry of host="1.1.1.1", and show the full entry. Thank you by mwcentracomm Explorer in Splunk Search 02-12-2024 0 1 | 0 | 1 | ||
| Hello, I have the following data: I want to use this data to setup a dashboard. In this dashboard I want to show the ... by Roy1 Explorer in Splunk Search 02-12-2024 0 7 | 0 | 7 | ||
| I have this lookup that has a list of searches I want to run.I want to run a search that can run output the "magic" v... by paras Explorer in Splunk Search 02-11-2024 0 2 | 0 | 2 | ||
| I have log entries that have the following format :[<connectorName>|<scope>]<sp>The following are examples of the con... by yk010123 Path Finder in Splunk Search 02-11-2024 0 1 | 0 | 1 | ||
| Hi, I wanted to update splunk_security_essentials app (3.2.2 to 3.3.2) : after I did the restart, I have this error ... by mah Builder in Splunk Search 02-10-2024 3 14 | 3 | 14 | ||
| Hi community,I'm using rex to get some strings.The log is like\"submission_id\":337901The regex I'm using is:\"submis... by syk19567 Explorer in Splunk Search 02-09-2024 0 5 | 0 | 5 | ||
| Hello! I am trying to send syslogs to splunk from network devices using udp. I have one heavy forwarder and two index... by jmrubio Path Finder in Splunk Search 02-09-2024 0 3 | 0 | 3 | ||
| What is the most elegant way of searching for events where a field is not in a list of values? For example: index=f... by bobmorning Engager in Splunk Search 02-09-2024 0 1 | 0 | 1 |