Splunk Search

Splunk Search
Community Activity
mcm10285
Hi, anybody has an idea on how to get a value from one search and input it to another search, then display them in a ...
by mcm10285 Communicator in Splunk Search 07-17-2018
1 9
1
9
ixixix_spl
I am looking to perform a case match search and have found that this query template attempted to answer how to define...
by ixixix_spl Explorer in Splunk Search 07-17-2018
0 3
0
3
keekkenen
Hi, all for example, I want find all transactions contains some word. How to make it more faster ? If I have too mu...
by keekkenen Engager in Splunk Search 07-17-2018
0 6
0
6
m7787580
Hi Splunker, Originally I have an output like this as a raw event in Splunk:- 2018-07-17 14:56:08 MIR="TUE, 17-JUL-...
by m7787580 Explorer in Splunk Search 07-17-2018
0 2
0
2
ryan_t_gavin
For example, I have the field "received_files" with 3 values: 1, 2, and 3. I already ran "convert num(received_files...
by ryan_t_gavin New Member in Splunk Search 07-17-2018
0 0
0
0
Clovisa
Hello, I am trying to build a role that would allow the users to access to two indexes (index1 and index2). The inde...
by Clovisa Path Finder in Splunk Search 07-17-2018
0 2
0
2
IRHM73
Hi, I wonder whether someone may be able to help me please. I'm using the following stats query. `wso2_wmf(RequestC...
by IRHM73 Motivator in Splunk Search 07-17-2018
1 6
1
6
gokikrishnan198
I would like to find a error occurs in the past 30, 60 and 90 days. How to do that?
by gokikrishnan198 New Member in Splunk Search 07-16-2018
0 1
0
1
flzhang132
In my dashBoard,i edit a table in sampleXML,then, The table is converted from sampleXML to HTML. and Converted code v...
by flzhang132 Explorer in Splunk Search 07-16-2018
0 1
0
1
naotoyoshida
I'm using Windows Universal Forwarder (UF) 7.1.2 in my test environment. Windows 2012 R2 (gets security event from R...
by naotoyoshida New Member in Splunk Search 07-16-2018
0 0
0
0
CryoHydra
Team, We have 3 different sourcetype on which endpoint/device are identified by different fieldname: sourcetype=x e...
by CryoHydra Path Finder in Splunk Search 07-16-2018
0 4
0
4
yagbootz48
Hello, I need some help. I'm trying to make a search where I take recipient_count and assign a "value" based on how...
by yagbootz48 New Member in Splunk Search 07-16-2018
0 3
0
3
SSchaff81
Hello splunk users, So I have a system that I am logging all errors to splunk. I have been getting a few false posi...
by SSchaff81 New Member in Splunk Search 07-16-2018
0 2
0
2
joydeep741
I have created a search to populate a lookup periodically. index x sourcetype=y | outputlookup abc.csv append=true ...
by joydeep741 Path Finder in Splunk Search 07-16-2018
0 2
0
2
aravindkv805
I have a requirement where I have to show the logs in splunk after an earlier search query. i.e Suppose I get a set o...
by aravindkv805 New Member in Splunk Search 07-16-2018
0 0
0
0
zhatsispgx
Hi there, I am trying to use the Python Splunk-SDK to query results from a search, and return a specific field that...
by zhatsispgx Path Finder in Splunk Search 07-16-2018
0 7
0
7
tjago11
Trying to find a consistent way of finding events that contain invalid JSON. We've ran into all sorts of different is...
by tjago11 Communicator in Splunk Search 07-16-2018
0 14
0
14
zikpefu
I am producing a table that will monitor what various users are searching for and I am trying to limit the amount of ...
by zikpefu New Member in Splunk Search 07-16-2018
0 2
0
2
jip31
hello i try to use the code below but everytimes i have an issue of quote or parenthesis even if i do modifications: ...
by jip31 Motivator in Splunk Search 07-16-2018
0 9
0
9
Mohsin123
Hi, I'm trying to assign the multivalue field ApixRes and RestRes to a new variable result . But , it isnt working a...
by Mohsin123 Path Finder in Splunk Search 07-16-2018
0 3
0
3
vwilson3
Greetings, I'm pretty new to Splunk. I have to create a search/alert and am having trouble with the syntax. This i...
by vwilson3 Path Finder in Splunk Search 07-16-2018
0 7
0
7
leantricity
Hi: I want to extract 3 fields from this line Create "/juanpablo/files/Splunk Info/universalforwarders.pdf" with fi...
by leantricity New Member in Splunk Search 07-16-2018
0 1
0
1
abhishekbanerje
Hi Experts, Need your support for one POC, I need to know whether we can get the dynatrace appmon/managed 7.1 alert ...
by abhishekbanerje New Member in Splunk Search 07-16-2018
0 0
0
0
alex389
Hi, I want to use an eval if statement to add a minus onto the original value if it's is true. I am using table comma...
by alex389 Engager in Splunk Search 07-16-2018
0 2
0
2
tac24
I want to extract a value dynamically in a subsearch and give the value (string) to source= << string>> of COLLECT co...
by tac24 New Member in Splunk Search 07-15-2018
0 2
0
2
Get Updates on the Splunk Community!

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Laser Bananas and Edge Hubs: Exploring Operational Technology (OT) Data Through a ...

  OT is a different environment to traditional IT and can have interesting challenges when interfacing the ...

Event Series: Mastering AI Tokenomics and Splunk Agent Observability

Beyond the Black Box: Correlating AI Performance and Tokenomics with Splunk Agent Observability   As ...
Top Solution Authors