Splunk Search

Splunk Search
Community Activity
LearningGuy
Hello,I don't know how to simulate this using makeresults, but I have data over 10,000 (let say 50,000)If I sort desc...
by LearningGuy Motivator in Splunk Search 02-21-2024
0 1
0
1
indeed_2000
HiI have a query that need to compare count of PF field for two log file:on splunk I have two query that create this ...
by indeed_2000 Motivator in Splunk Search 02-21-2024
0 4
0
4
avikc100
I am using Splunk Enterprise Version: 9.1.0.1.my search query is :index="webmethods_prd" source="/apps/webmethods/int...
by avikc100 Path Finder in Splunk Search 02-21-2024
0 5
0
5
Tron-spectron47
Can an event be searched using the transaction without any index or source values?Yes or Nobreif answer on selection
by Tron-spectron47 Loves-to-Learn in Splunk Search 02-21-2024
0 3
0
3
ea-2023
I'm not sure why rex is properly matching the beginning of the value I am looking for (NameofTeam), but it also match...
by ea-2023 Path Finder in Splunk Search 02-21-2024
0 4
0
4
GEB
Our splunk implementation has SERVERNAME as a preset field, and there are servers in different locations, but there i...
by GEB Explorer in Splunk Search 02-21-2024
0 4
0
4
guywood13
 index=my_index source="/var/log/nginx/access.log" | stats avg(request_time) as Average_Request_Time | where Average...
by guywood13 Path Finder in Splunk Search 02-21-2024
0 7
0
7
simo
hiI have this situationindex="idx" [| inputlookup name.csv | table id name ]idx=idname1a2aaa1A2aaa12abbb lookupidname...
by simo Path Finder in Splunk Search 02-21-2024
0 1
0
1
Harikiranjammul
Can some one please help with the regex that can be used to view the below event in tabular format.EventINFO > 2024-0...
by Harikiranjammul Explorer in Splunk Search 02-21-2024
0 1
0
1
bigll
Hi.I have a single filed for date and time of event - 2024-02-19T11:16:58.930104ZI would like to have to fields Date ...
by bigll Path Finder in Splunk Search 02-21-2024
0 3
0
3
ea-2023
HelloI have a working dashboard where I have various fields that can be defined (field1 and field2 in the example), a...
by ea-2023 Path Finder in Splunk Search 02-20-2024
0 11
0
11
att35
We have application data coming from Apache Tomcat's and have a regex in place to extract exception name. But there a...
by att35 Builder in Splunk Search 02-20-2024
0 3
0
3
atul9771
I need help to write a search query where the result from the one query is passed onto the second query1 we import th...
by atul9771 Engager in Splunk Search 02-20-2024
0 2
0
2
ramnaresh2051
I have requirement to calculate total time a user has been connected to system, for that I have logs as below which s...
by ramnaresh2051 Engager in Splunk Search 02-20-2024
0 3
0
3
DaClyde
In Microsoft IIS logs, when a field is empty, a dash ( - ) is used instead of leaving the value blank.  Presumably th...
by DaClyde Contributor in Splunk Search 02-20-2024
0 4
0
4
att35
We have a search where one of the fields from base search is passed onto a REST API using map command.  <Base Search>...
by att35 Builder in Splunk Search 02-20-2024
0 2
0
2
Olivier2024
Hi all,I'm trying to extract a part of a field. The field named Computer and is like MySrv.MyDomain.MySubDom1.comMySu...
by Olivier2024 Explorer in Splunk Search 02-20-2024
0 4
0
4
ITSplunk117
I'm using a modified search from splunksearches.com to get the events from the past two days and returning the differ...
by ITSplunk117 Path Finder in Splunk Search 02-20-2024
0 2
0
2
omcollia
"I have an issue with creating a field named 'Path' which should be populated with 'YES' or 'NO' based on the followi...
by omcollia Engager in Splunk Search 02-20-2024
0 3
0
3
DEADBEEF
I have a timechart that shows the last 30d and with the timechart I also have a trendline showing the sma7.  The prob...
by DEADBEEF Path Finder in Splunk Search 02-19-2024
0 3
0
3
Harish2
|mstats avg(os.mem.utilized) as Memory_Used where index=metricsidx host=host1 OR host=host2 span=1d |table Memory_Us...
by Harish2 Path Finder in Splunk Search 02-19-2024
0 3
0
3
runiyal
I have a logfile like this - 2024-02-15 09:07:47,770 INFO [com.mysite.core.app1.upload.FileUploadWebScript] [http-ni...
by runiyal Path Finder in Splunk Search 02-19-2024
0 7
0
7
jip31
hi When I call the lookup like below it works fine     | inputlookup test.csv     but when I use the lookup in a sear...
by jip31 Motivator in Splunk Search 02-19-2024
0 20
0
20
MattiaP
Hi, I have an index that doesn't show events anymore. Could you help me please?On November I had a problem with Mongo...
by MattiaP Loves-to-Learn Lots in Splunk Search 02-19-2024
0 9
0
9
codetester
 So we have a query: (index="it_ops") source="bank_sys" message.content.country IN ("CANADA","USA","UK","FRANCE","SP...
by codetester Loves-to-Learn Lots in Splunk Search 02-19-2024
0 1
0
1
Get Updates on the Splunk Community!

Mastering Threat Intelligence in ES 8.5, Splunk AI Assistant v2, and More from Splunk ...

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...

Break the Build: Inside the KubeDoom Lounge at .conf26

    You step up to the machine. The pixelated corridors of a certain 1993 FPS load in front of you, EMP Pulse ...

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...