Splunk Search

Splunk Search
Community Activity
kiamco
so I have this query (host=pnr-proxy-prod* OR host=master*.menlosecurity.com* OR host=pnr-webui-prod*) (source=* s...
by kiamco Path Finder in Splunk Search 05-22-2018
0 2
0
2
EricLloyd79
So we have this query: index=_internal type=Usage st!=splunk_metrics earliest=-1d@d latest=-0d@d | bucket _time sp...
by EricLloyd79 Builder in Splunk Search 05-22-2018
0 5
0
5
Log_wrangler
I have an app behind a WAF, and I am looking at the WAF logs to see how many unique login IDs are coming from a singl...
by Log_wrangler Builder in Splunk Search 05-22-2018
0 2
0
2
jip31
hi i want to use the powershell code below in order to know if the computer ping or not PS C:> Test-Connection -Comp...
by jip31 Motivator in Splunk Search 05-22-2018
0 1
0
1
anandbharti
I want to test the data retrieved by Splunk query. How can I validate the results.
by anandbharti New Member in Splunk Search 05-22-2018
0 2
0
2
balamv
Hi Team, I like to find the peak time of the success requests (http_status=200) and also the least time of the reques...
by balamv Engager in Splunk Search 05-22-2018
0 3
0
3
zacksoft
| eval usage=case(like(_raw,"%FirstClass%"),"A_Grade",like(_raw,"%SecondClass%"),"B_Grade",like(_raw,"%ThirdClass%"),...
by zacksoft Contributor in Splunk Search 05-22-2018
0 7
0
7
angersleek
This is my log format. { servicename: ServiceOne end.timestamp: 20000 start.timestamp: 19920 } { s...
by angersleek Path Finder in Splunk Search 05-22-2018
0 1
0
1
sagrl
I want to use the collect command and want to push the Host, source and source-type coming from the Original index. ...
by sagrl Explorer in Splunk Search 05-22-2018
0 1
0
1
test_qweqwe
Hello When the value of lookup equal to result of event = do not show that event. How to create kinda search?
by test_qweqwe Builder in Splunk Search 05-22-2018
1 1
1
1
brdr
I'm looking through time specifiers in Splunk doc. I don't see how I can snap towards the end of month. If I do this:...
by brdr Contributor in Splunk Search 05-22-2018
0 2
0
2
Shan
When I use the below drilldown query without eval its working fine and I'm getting the result as expected. But when I...
by Shan Builder in Splunk Search 05-22-2018
0 4
0
4
Mubarish
Hi I have three log files which provide information for file transmission. The File transmission information is in ...
by Mubarish Path Finder in Splunk Search 05-22-2018
0 8
0
8
liondancer
I have the following output from my query: **Search Query** | eval DateHour=year."-".month."-".day."-".hour | chart ...
by liondancer Explorer in Splunk Search 05-22-2018
0 3
0
3
jacqu3sy
Hi, Whats the most efficient way to use a lookup table within a query to exclude results where 2 fields exist, i.e. ...
by jacqu3sy Path Finder in Splunk Search 05-21-2018
0 7
0
7
AKG1_old1
Hello, I have upgraded Splunk Enterprise to 7.0.1. One of the search query is taking ages to finish it. Same query f...
by AKG1_old1 Builder in Splunk Search 05-21-2018
1 13
1
13
varunapj
Hi All, I am new to SPLUNK and building dashboards and I have requirement to count the records from the table No of...
by varunapj New Member in Splunk Search 05-21-2018
0 1
0
1
mfrost8
I am currently using a trellis layout successfully for a timechart. These show activity today. I'm interested in h...
by mfrost8 Builder in Splunk Search 05-21-2018
0 2
0
2
john_glasscock
We are having issues with a OPSEC LEA connector. The Checkpoint firewall is showing say 5,000,000 events per hour. ...
by john_glasscock Path Finder in Splunk Search 05-21-2018
0 4
0
4
jnahuelperez35
I was making some SQL dashboard and i can't use some variables cause one of them is the kerberos USER that comes like...
by jnahuelperez35 Path Finder in Splunk Search 05-21-2018
0 4
0
4
ebailey
I need to take the output of a query and create a table for two fields and then sum the output of one field. The two ...
by ebailey Communicator in Splunk Search 05-21-2018
2 5
2
5
dcroteau
Trying to separate leostream "broker" events that come from syslog into it's own separate index called leostream. Wh...
by dcroteau Splunk Employee Splunk Employee in Splunk Search 05-21-2018
0 5
0
5
bollam
I have written a query which produces a pie chart but I do not wish to display fields name in the pie chart. Can some...
by bollam Path Finder in Splunk Search 05-20-2018
0 3
0
3
HattrickNZ
This is my sample search and corresponding output: | makeresults | eval data = " 1 2017-12 A 1557...
by HattrickNZ Motivator in Splunk Search 05-20-2018
0 3
0
3
krusovice
Hello there, I've generated a table with data as below showing the % of data computed for various type of products. ...
by krusovice Path Finder in Splunk Search 05-20-2018
0 4
0
4
Get Updates on the Splunk Community!

Monitoring AI Agents with Splunk Observability Cloud

Let’s say I’m running a travel planning AI app in production. A user asks for three concise hotel options in ...

[Puzzles] Solve, Learn, Repeat: Tiling

This puzzle (first published here) is based on finding groups of tessellated tiles (inspired by floor tiles I ...

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...