Splunk Search

Splunk Search
Community Activity
JuhiSaxena
I am using CASE statements to evaluate value of msgcode variable below. Can this set of CASE-like statements be repla...
by JuhiSaxena Explorer in Splunk Search 07-03-2018
0 2
0
2
zacksoft
Could someone help me extract the two bold words from the following sample SAMPLE EVENT 1 2018-07-02 08:51:44,648 ht...
by zacksoft Contributor in Splunk Search 07-03-2018
0 11
0
11
guythomasdavis
Hi all, first question on Splunk Answers. I just finished the Fundamentals I training and am now wanting to do some m...
by guythomasdavis Explorer in Splunk Search 07-03-2018
0 4
0
4
a212830
Hi, Is there a setting to limit max runtime for a search? I don't see anything obvious.
by a212830 Champion in Splunk Search 07-03-2018
0 4
0
4
zacksoft
I have query which goes like this sourcetype="A" host=B |rex "^(?:[^ \n]* ){2}(?P<user>\w+)"|rex "^(?:[^...
by zacksoft Contributor in Splunk Search 07-03-2018
0 1
0
1
monteiroh
Hi, i want to send a dashboard link to someone, after selecting a zoom/pan in a chart and i want that pan to be copie...
by monteiroh Explorer in Splunk Search 07-03-2018
0 12
0
12
HeinzWaescher
Hi, is there a function to create the MD5 hash of a value? Cheers Heinz
by HeinzWaescher Motivator in Splunk Search 07-03-2018
0 1
0
1
jip31
Hello I use 2 reports with the code below index="windows-wmi" sourcetype="wmi:DiskRAMLoad" host="$field1$" (Name="m...
by jip31 Motivator in Splunk Search 07-02-2018
0 4
0
4
jshah24
Why is there a difference between the number of events scanned in both these queries? Using below query getting stati...
by jshah24 Explorer in Splunk Search 07-02-2018
1 4
1
4
premraj_vs
Here is my query > index="test" (source="*28q*" OR > source="*29q*") | bucket _time > span=1d as day | rex field=_r...
by premraj_vs Path Finder in Splunk Search 07-02-2018
0 1
0
1
gbwilson
I've created a search that is composed of two subsearches. I have a dashboard where if I search an application name,...
by gbwilson Path Finder in Splunk Search 07-02-2018
0 6
0
6
johnward4
I am trying to populate a dropdown menu using a lookup table that contains all my server's hostname in one column and...
by johnward4 Communicator in Splunk Search 07-02-2018
0 7
0
7
jassal
I'm trying to show the total HVAC usage during the day using transaction command: name=thermostatoperatingstate | t...
by jassal New Member in Splunk Search 07-02-2018
0 2
0
2
eplate
I would like to create a timeline view that shows the begin/end time of every event for a given transaction. The tran...
by eplate New Member in Splunk Search 07-02-2018
0 2
0
2
Ragate
I currently have this search query: source="C:\Users\ragate\Desktop\splunk\JsonDump.txt" | eval "LicenseKeyID"=su...
by Ragate Explorer in Splunk Search 07-02-2018
0 3
0
3
calarie001
As far as I know the time picker searches based on the time that the data was indexed in Splunk. I need to search bas...
by calarie001 Explorer in Splunk Search 07-02-2018
0 5
0
5
khourihan_splun
0
2
a212830
Hi, I have a number of scheduled searches which run significantly faster than the same search run from the search-ba...
by a212830 Champion in Splunk Search 07-02-2018
0 7
0
7
NJL
I've created a dashboard showing downtime for BGP adjacencies and WAN circuits. It works (almost) perfectly, but rece...
by NJL Explorer in Splunk Search 07-02-2018
0 4
0
4
jip31
HELLO I try to do an avg on multiple fields but i dont succeed for one field i use this / stats avg(ReadOperation...
by jip31 Motivator in Splunk Search 07-02-2018
0 3
0
3
joydeep741
I have a lookup of epoch times: epoch_time_lookup.csv Start Time End Time 1529737700 1529737800 1529737600 15297...
by joydeep741 Path Finder in Splunk Search 07-01-2018
1 2
1
2
tomtomFR
Hello there ! This is my first post here  I've already read a lot of query/answer, try a lot of things, but .... ...
by tomtomFR Explorer in Splunk Search 07-01-2018
0 7
0
7
ranjitbrhm1
Hello All i have the below query which is based on a ping request running on the back end. the data looks like this ...
by ranjitbrhm1 Communicator in Splunk Search 07-01-2018
0 3
0
3
Piraisudan
I need solution for the following example, My String : {<!-- -->{My_pa{ss}word}} In this string I want to select only star...
by Piraisudan New Member in Splunk Search 06-30-2018
0 3
0
3
pwild_splunk
I have some events like this. Wifi AP and DEVICE connected to it. A one to many AP to DEVICE relationship exists AP,...
by pwild_splunk Splunk Employee Splunk Employee in Splunk Search 06-30-2018
0 2
0
2
Get Updates on the Splunk Community!

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI &#43; Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...

Splunk Technical Support Is Moving to Cisco Support Tools

Introduction Splunk technical support is transitioning to Cisco’s support environment. This change brings ...
Top Solution Authors