Splunk Search

Splunk Search
Community Activity
sansay
Last week, we had someone run a query in which he had "index=*" over 1 week. This triggered a surge of memory usage t...
by sansay Contributor in Splunk Search 02-08-2024
4 7
4
7
herguzav
Hi frends I have logs like_time=time latitude=1 longitude=-1 other fields ..._time=time latitude=1 longitude=-2 other...
by herguzav Explorer in Splunk Search 02-08-2024
0 1
0
1
Loepp
I have a challenge: When somebody are doing changes to our AD, it is done using a cyberark account. In order to finde...
by Loepp Observer in Splunk Search 02-08-2024
0 4
0
4
lawrence_magpoc
After upgrading our universal forwarder to 9.0.1, it started crashing almost everyday. I looked at the splunkd.log an...
by lawrence_magpoc Path Finder in Splunk Search 02-08-2024
0 3
0
3
manas
I have a lookup file . It has 2 columns : Service and Entity and 500+ rows. Service has 34 unique values and Entity h...
by manas Explorer in Splunk Search 02-07-2024
0 3
0
3
nilesh1
Horizontal Scan: External scan against a group of IPs for a single port.  Vertical Scan: External Single IP being sca...
by nilesh1 New Member in Splunk Search 02-07-2024
0 3
0
3
sahana
I have a search query statistical result values in the below formatLogin modeTotal loginxxx48Yyyy23aaa52bbbb73 Now I ...
by sahana Engager in Splunk Search 02-07-2024
0 3
0
3
jaibalaraman
Hi Team I tried the below search but not getting any result, index=aws component=Metrics group=per_index_thruput earl...
by jaibalaraman Path Finder in Splunk Search 02-07-2024
0 8
0
8
Vch
Hi,I have two splunk search -1, search-2i have to create splunk alert for search-2 based on search-1. If search-1 cou...
by Vch Explorer in Splunk Search 02-07-2024
0 6
0
6
mattcg
How can I get outputlookup or outputcsv to only include certain fields in the resulting lookup file? An example exp...
by mattcg Explorer in Splunk Search 02-07-2024
1 5
1
5
sahana
I have another requirement like, I want to show an bar chart which should show the total login count in basis of the ...
by sahana Engager in Splunk Search 02-07-2024
0 1
0
1
sahana
I have a requirement where I need to fetch the success, failure count and average response time. In events field I ha...
by sahana Engager in Splunk Search 02-07-2024
0 5
0
5
anissabnk
Hello,  I have a question on a spl request. I have those extracted fields about the entry data.  I used this spl requ...
by anissabnk Path Finder in Splunk Search 02-07-2024
0 3
0
3
ravir_jbp
  I am looking for specific query where I can alter the row values after the final output and create new column with ...
by ravir_jbp Explorer in Splunk Search 02-07-2024
0 7
0
7
oussama1
I am working with event data in Splunk where each event contains a command with multiple arguments. I'm extracting th...
by oussama1 Loves-to-Learn Everything in Splunk Search 02-06-2024
0 8
0
8
heber
App TA_MongoDB_Atlas (6238) pages not loading after migration for 9,1.2.
by heber Loves-to-Learn Lots in Splunk Search 02-06-2024
0 0
0
0
rteja9
I have a json which I need help with breaking into key value pair.     "lint-info": { "-Wunused-but-set-v...
by rteja9 Path Finder in Splunk Search 02-06-2024
0 2
0
2
chvenu17
I need regular expression to extract JSON from message field .. Can some one help After extract i want to parse the e...
by chvenu17 Path Finder in Splunk Search 02-06-2024
0 10
0
10
zebraslunker
i have a splunk query below that returns me ( ( ( list_value2="dev1" OR list_value2="dev2" OR list_value2="dev5" OR l...
by zebraslunker Loves-to-Learn in Splunk Search 02-06-2024
0 3
0
3
beeville
Running the search below gives me a horizontal list of the fields and values where I scroll left to right. How do you...
by beeville Observer in Splunk Search 02-06-2024
0 1
0
1
gabrieltrust
I need to find new added hosts using lookup files.The solutions in blog didn't work for me.I will create a lookup fil...
by gabrieltrust Engager in Splunk Search 02-06-2024
0 3
0
3
vegarberget
Hello,Do anyone have a quick howto on using this application.With examples?
by vegarberget Engager in Splunk Search 02-06-2024
0 1
0
1
pcookhayboo
I've been working to recreate a query in Splunk from Microsoft Defender Endpoint that shows what files users have cop...
by pcookhayboo Explorer in Splunk Search 02-05-2024
0 1
0
1
afs_splunk
We have a splunk query that pulls down a list of values daily.  We are looking to see if we can use splunk to find th...
by afs_splunk Observer in Splunk Search 02-05-2024
0 1
0
1
Haleem
index=xxxx source=*xxxxxx*| eval respStatus=case(responseStatus>=500, "ERRORS", responseStatus>=400, "EXCEPTIONS", re...
by Haleem Engager in Splunk Search 02-05-2024
0 2
0
2
Get Updates on the Splunk Community!

(re)Introducing the Splunk Community Champions + 2026 – 2027 Splunk MVPs ...

This program exists as a channel to empower and recognize Splunk advocates and help supercharge initiatives to ...

Introducing the 2026 - 2027 SplunkTrust cohort!

The goal of the SplunkTrust™ membership has historically been to acknowledge and recognize those who go above ...

Pro Tips for .conf26: How to Prep Like a Splunk Veteran

There’s no shortage of incredible content lined up for .conf26 in Denver, from deep-dive technical sessions ...
Top Solution Authors