Splunk Search

Splunk Search
Community Activity
mwcentracomm
HelloI would like a search to show the last entry of host="1.1.1.1", and show the full entry. Thank you
by mwcentracomm Explorer in Splunk Search 02-12-2024
0 1
0
1
Roy1
Hello, I have the following data: I want to use this data to setup a dashboard. In this dashboard I want to show the ...
by Roy1 Explorer in Splunk Search 02-12-2024
0 7
0
7
paras
I have this lookup that has a list of searches I want to run.I want to run a search that can run output the "magic" v...
by paras Explorer in Splunk Search 02-11-2024
0 2
0
2
yk010123
I have log entries that have the following format :[<connectorName>|<scope>]<sp>The following are examples of the con...
by yk010123 Path Finder in Splunk Search 02-11-2024
0 1
0
1
mah
Hi,  I wanted to update splunk_security_essentials app (3.2.2 to 3.3.2) : after I did the restart, I have this error ...
by mah Builder in Splunk Search 02-10-2024
3 14
3
14
syk19567
Hi community,I'm using rex to get some strings.The log is like\"submission_id\":337901The regex I'm using is:\"submis...
by syk19567 Explorer in Splunk Search 02-09-2024
0 5
0
5
jmrubio
Hello! I am trying to send syslogs to splunk from network devices using udp. I have one heavy forwarder and two index...
by jmrubio Path Finder in Splunk Search 02-09-2024
0 3
0
3
bobmorning
What is the most elegant way of searching for events where a field is not in a list of values?   For example: index=f...
by bobmorning Engager in Splunk Search 02-09-2024
0 1
0
1
Haleb
I have the following SPL search. index="cloudflare" | top ClientRequestPath by ClientRequestHost | eval percent = rou...
by Haleb Path Finder in Splunk Search 02-09-2024
0 1
0
1
dm2
Hi, I have a connection on Splunk DB Connect on my HF (connected to my SH and I know connection is stable and other s...
by dm2 Explorer in Splunk Search 02-09-2024
0 1
0
1
AL3Z
Hi All,How we can modify the below search to get to see only the status enabled list of correlation searches which di...
by AL3Z Builder in Splunk Search 02-09-2024
0 4
0
4
Real_captain
Hi I want to create a search to find all the events for which last row exists but there is atleast 1 row missing. Exa...
by Real_captain Path Finder in Splunk Search 02-09-2024
0 1
0
1
bmanikya
Search Query 1 Search Query 2Would like to join search query 1 and 2 and get the results, but no results found.index=...
by bmanikya Loves-to-Learn Everything in Splunk Search 02-09-2024
0 6
0
6
man03359
Hi All,I have a field called summary in my search -Failed backup of the transaction log for SQL Server database 'mode...
by man03359 Communicator in Splunk Search 02-08-2024
0 4
0
4
sansay
Last week, we had someone run a query in which he had "index=*" over 1 week. This triggered a surge of memory usage t...
by sansay Contributor in Splunk Search 02-08-2024
4 7
4
7
herguzav
Hi frends I have logs like_time=time latitude=1 longitude=-1 other fields ..._time=time latitude=1 longitude=-2 other...
by herguzav Explorer in Splunk Search 02-08-2024
0 1
0
1
Loepp
I have a challenge: When somebody are doing changes to our AD, it is done using a cyberark account. In order to finde...
by Loepp Observer in Splunk Search 02-08-2024
0 4
0
4
lawrence_magpoc
After upgrading our universal forwarder to 9.0.1, it started crashing almost everyday. I looked at the splunkd.log an...
by lawrence_magpoc Path Finder in Splunk Search 02-08-2024
0 3
0
3
manas
I have a lookup file . It has 2 columns : Service and Entity and 500+ rows. Service has 34 unique values and Entity h...
by manas Explorer in Splunk Search 02-07-2024
0 3
0
3
nilesh1
Horizontal Scan: External scan against a group of IPs for a single port.  Vertical Scan: External Single IP being sca...
by nilesh1 New Member in Splunk Search 02-07-2024
0 3
0
3
sahana
I have a search query statistical result values in the below formatLogin modeTotal loginxxx48Yyyy23aaa52bbbb73 Now I ...
by sahana Engager in Splunk Search 02-07-2024
0 3
0
3
jaibalaraman
Hi Team I tried the below search but not getting any result, index=aws component=Metrics group=per_index_thruput earl...
by jaibalaraman Path Finder in Splunk Search 02-07-2024
0 8
0
8
Vch
Hi,I have two splunk search -1, search-2i have to create splunk alert for search-2 based on search-1. If search-1 cou...
by Vch Explorer in Splunk Search 02-07-2024
0 6
0
6
mattcg
How can I get outputlookup or outputcsv to only include certain fields in the resulting lookup file? An example exp...
by mattcg Explorer in Splunk Search 02-07-2024
1 5
1
5
sahana
I have another requirement like, I want to show an bar chart which should show the total login count in basis of the ...
by sahana Engager in Splunk Search 02-07-2024
0 1
0
1
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...