Splunk Search

Splunk Search
Community Activity
omarka
Hi everyone, I'm looking to have this result: For that I have 2 lines in my file: Question: Service + IdTransac...
by omarka New Member in Splunk Search 07-03-2018
0 11
0
11
derekf
In my search strings I often rename columns using "AS". Is there a way I can expose those as parameters so that when ...
by derekf Explorer in Splunk Search 07-03-2018
0 3
0
3
sdesigowda
I am putting a query to findout all SSH connection between internal network and external network. Logic I am trying...
by sdesigowda New Member in Splunk Search 07-03-2018
0 4
0
4
Danielle2018V
Hello How do you convert the following test string to a regular expression, if the test string contains spaces? Beca...
by Danielle2018V New Member in Splunk Search 07-03-2018
0 2
0
2
jackpal
I have the following simple query: index=os sourcetype=vmstat tag=dcv-na | eval MaxLoad = 28 | timechart max(loadA...
by jackpal Path Finder in Splunk Search 07-03-2018
0 3
0
3
tkwaller_2
I have a tabled data set like: ID Assessment Name Workflow Name Phase Name Process Name Step Name Step Owne...
by tkwaller_2 Communicator in Splunk Search 07-03-2018
0 2
0
2
Clovisa
Hi, I am trying to compare the top sales of the latest week to the top sales of the previous week. I am trying to ge...
by Clovisa Path Finder in Splunk Search 07-03-2018
0 2
0
2
JuhiSaxena
I am using CASE statements to evaluate value of msgcode variable below. Can this set of CASE-like statements be repla...
by JuhiSaxena Explorer in Splunk Search 07-03-2018
0 2
0
2
zacksoft
Could someone help me extract the two bold words from the following sample SAMPLE EVENT 1 2018-07-02 08:51:44,648 ht...
by zacksoft Contributor in Splunk Search 07-03-2018
0 11
0
11
guythomasdavis
Hi all, first question on Splunk Answers. I just finished the Fundamentals I training and am now wanting to do some m...
by guythomasdavis Explorer in Splunk Search 07-03-2018
0 4
0
4
a212830
Hi, Is there a setting to limit max runtime for a search? I don't see anything obvious.
by a212830 Champion in Splunk Search 07-03-2018
0 4
0
4
zacksoft
I have query which goes like this sourcetype="A" host=B |rex "^(?:[^ \n]* ){2}(?P<user>\w+)"|rex "^(?:[^...
by zacksoft Contributor in Splunk Search 07-03-2018
0 1
0
1
monteiroh
Hi, i want to send a dashboard link to someone, after selecting a zoom/pan in a chart and i want that pan to be copie...
by monteiroh Explorer in Splunk Search 07-03-2018
0 12
0
12
HeinzWaescher
Hi, is there a function to create the MD5 hash of a value? Cheers Heinz
by HeinzWaescher Motivator in Splunk Search 07-03-2018
0 1
0
1
jip31
Hello I use 2 reports with the code below index="windows-wmi" sourcetype="wmi:DiskRAMLoad" host="$field1$" (Name="m...
by jip31 Motivator in Splunk Search 07-02-2018
0 4
0
4
jshah24
Why is there a difference between the number of events scanned in both these queries? Using below query getting stati...
by jshah24 Explorer in Splunk Search 07-02-2018
1 4
1
4
premraj_vs
Here is my query > index="test" (source="*28q*" OR > source="*29q*") | bucket _time > span=1d as day | rex field=_r...
by premraj_vs Path Finder in Splunk Search 07-02-2018
0 1
0
1
gbwilson
I've created a search that is composed of two subsearches. I have a dashboard where if I search an application name,...
by gbwilson Path Finder in Splunk Search 07-02-2018
0 6
0
6
johnward4
I am trying to populate a dropdown menu using a lookup table that contains all my server's hostname in one column and...
by johnward4 Communicator in Splunk Search 07-02-2018
0 7
0
7
jassal
I'm trying to show the total HVAC usage during the day using transaction command: name=thermostatoperatingstate | t...
by jassal New Member in Splunk Search 07-02-2018
0 2
0
2
eplate
I would like to create a timeline view that shows the begin/end time of every event for a given transaction. The tran...
by eplate New Member in Splunk Search 07-02-2018
0 2
0
2
Ragate
I currently have this search query: source="C:\Users\ragate\Desktop\splunk\JsonDump.txt" | eval "LicenseKeyID"=su...
by Ragate Explorer in Splunk Search 07-02-2018
0 3
0
3
calarie001
As far as I know the time picker searches based on the time that the data was indexed in Splunk. I need to search bas...
by calarie001 Explorer in Splunk Search 07-02-2018
0 5
0
5
khourihan_splun
0
2
a212830
Hi, I have a number of scheduled searches which run significantly faster than the same search run from the search-ba...
by a212830 Champion in Splunk Search 07-02-2018
0 7
0
7
Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...