Splunk Search

Splunk Search
Community Activity
Lynda_Sadi1275
Hello, I'm new with SPL and Splunk, I have a folder that has 3 files, in the first file I have a column called Vbloc...
by Lynda_Sadi1275 Path Finder in Splunk Search 07-15-2018
0 5
0
5
Mohsin123
Hi, I want to replace my events with _raw=Body can anyone help ? pl let me know the regex . Regards Shraddha
by Mohsin123 Path Finder in Splunk Search 07-15-2018
0 6
0
6
meenu_2017
Hello Fellow Splunkers, Need help to understand a scenario that I came across in my org. Why would the same search ru...
by meenu_2017 Explorer in Splunk Search 07-15-2018
0 8
0
8
Sukisen1981
Hi, I have logs like this : Exception in thread "main" java.lang.RuntimeException: Some other message at Excepti...
by Sukisen1981 Champion in Splunk Search 07-14-2018
0 6
0
6
abhi04
I have a below query: index="auto_prod_cm_comparisions" sourcetype="auto_prod_details_log" source="/logs/web/output...
by abhi04 Communicator in Splunk Search 07-13-2018
0 5
0
5
catalinberbece
Hello, I am trying to use the result of an intersect to further search in one of the indexes. | set intersect [searc...
by catalinberbece New Member in Splunk Search 07-13-2018
0 4
0
4
srobinsonxtl
All, I have been trying to figure this out, but running out of Ideas. I have the following data note the column nam...
by srobinsonxtl Path Finder in Splunk Search 07-13-2018
0 2
0
2
bobmccoy
unable to forward squid logs when i add to log format xforwarder i am currently forwarding from my squid servers to ...
by bobmccoy Explorer in Splunk Search 07-13-2018
0 0
0
0
JustRoot
I am trying to create a query that monitors logins. The logic is that it should alert me if a user (UserId) attempts ...
by JustRoot Path Finder in Splunk Search 07-13-2018
0 10
0
10
leantricity
sorry about this but I'm new to Splunk: I have a folder where log files coming from several computers are stored. Al...
by leantricity New Member in Splunk Search 07-13-2018
0 6
0
6
nilendra1988
Hi , I am counting events per day for last 60 days between 5:00 PM to 5:00 PM. I tried using timechart , but seems i...
by nilendra1988 New Member in Splunk Search 07-13-2018
0 3
0
3
john_q
i have a data which consists of multiple exceptions . so i have to figure out how many exceptions are occurred like 0...
by john_q Explorer in Splunk Search 07-13-2018
0 1
0
1
harishalipaka
Hi Splunkers , Here below is my data look like that .In that i want to get avg(sum_PBD) based on Date Conditions:...
by harishalipaka Motivator in Splunk Search 07-13-2018
0 7
0
7
andrehl
Hi guys, Currently, my data is grouped like this: 1. Product | 2018-5-5 02:00 | 2018-5-5 02:30 | 2018-5-5 04:00 |...
by andrehl Explorer in Splunk Search 07-13-2018
0 1
0
1
pwild_splunk
I have a complex search query that is quite slow when run over a longer period of time. It populates a dashboard. To ...
by pwild_splunk Splunk Employee Splunk Employee in Splunk Search 07-13-2018
0 1
0
1
ADPSTT
Hello! On a server we need to have X mandatory applications insalled. I would like to create a list of servers wit...
by ADPSTT New Member in Splunk Search 07-13-2018
0 3
0
3
yutaka1005
Splunk ver : 6.2.7 OS : CentOS 7 I'm trying outputlookup some lookup files from one lookup file. Below is the source...
by yutaka1005 Builder in Splunk Search 07-12-2018
0 2
0
2
rajeswarir
IDS Entry Time in ms Exit Time in ms 1 30 40 2 ...
by rajeswarir New Member in Splunk Search 07-12-2018
0 5
0
5
quahfamili
Hi all, I had been using splunk for a period of time. However, I notice that the performance started to degrade as m...
by quahfamili Path Finder in Splunk Search 07-12-2018
0 1
0
1
splunkrocks2014
The following is a list of items per date from different counts. How can I get the delta from count_a, count_b, and ...
by splunkrocks2014 Communicator in Splunk Search 07-12-2018
0 3
0
3
eandres
<dashboard> <search id="mySearch1"> <query>|makeresults </query> </search> <search id="mySearch2"> <query>* </query> ...
by eandres Explorer in Splunk Search 07-12-2018
0 4
0
4
sylim_splunk
I'm trying to use WILDCARD for file based lookup and get an error message, "match_type is malformed" as below - Acco...
by sylim_splunk Splunk Employee Splunk Employee in Splunk Search 07-12-2018
0 1
0
1
hems03
I need to calculate the difference between a field in the most recent event with a given account_id and the latest ev...
by hems03 New Member in Splunk Search 07-12-2018
0 1
0
1
EricLloyd79
Is there a way to view the directories that a Splunk Query is searching through as it hunts through events? I recall...
by EricLloyd79 Builder in Splunk Search 07-12-2018
0 2
0
2
daniel333
All, I am reading other posts about this error, but what is not clear to me, is my customer still gets 100% of the ...
by daniel333 Builder in Splunk Search 07-12-2018
1 7
1
7
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...