Splunk Search

Splunk Search
Community Activity
BP9906
I have several rows of a CSV lookup Name,00:00,00:15,00:30 test1,A,A,A test2,A,N,N I want to matchup _time with the ...
by BP9906 Builder in Splunk Search 05-13-2018
0 1
0
1
ranjitbrhm1
Hello All, I want to write something that shows a single value with the below data Customer M 5 Units Customer N 15 ...
by ranjitbrhm1 Communicator in Splunk Search 05-13-2018
0 1
0
1
IRHM73
Hi, I wonder whether someone could help me please. I'm using the following join query which extracts the data perfec...
by IRHM73 Motivator in Splunk Search 05-13-2018
0 0
0
0
imrago
I am creating an app which is using a lookup file. That lookup file is populated by a saved search with this setting ...
by imrago Contributor in Splunk Search 05-13-2018
0 3
0
3
bdf0506
I have logs from two Unifi switches. One parses the date just fine, the other gets the year messed up, but parses the...
by bdf0506 Path Finder in Splunk Search 05-12-2018
0 6
0
6
zacksoft
This following doesn't work. I don't see the decimals limiting to two digits. | eval n=round(var5,2) | timechart spa...
by zacksoft Contributor in Splunk Search 05-12-2018
0 7
0
7
adonio
I am trying to round UP numbers one decimal to the left whenever its, for example: 10510 ---> 11000 10499 ---> 10000 ...
by adonio Ultra Champion in Splunk Search 05-11-2018
0 6
0
6
sramya
HI I want to write a query like this index=* "searchString1" | where in ([search "searchString2" | field key]) It...
by sramya New Member in Splunk Search 05-11-2018
0 2
0
2
Log_wrangler
Hi, I followed previous instructions and successfully was able to keep only ERROR and WARN logs and "discard the re...
by Log_wrangler Builder in Splunk Search 05-11-2018
0 2
0
2
sai_john
I need to calculate difference between (TodayLogins-AverageLogins of that particular weekday). For that I have calcu...
by sai_john New Member in Splunk Search 05-11-2018
0 3
0
3
cmak
When I plot a timechart, there are some empty buckets, which causes a gap in my graph. This happens if I have no data...
by cmak Contributor in Splunk Search 05-11-2018
1 6
1
6
rakesh_498115
hi.. how can i tell splunk to pick the first occurence of regular expression from a single event.i have written a re...
by rakesh_498115 Motivator in Splunk Search 05-11-2018
1 8
1
8
funlearning321
Hello, can i please whether the splunk will monitor the logs which are not absolutely specified . For example , i ha...
by funlearning321 New Member in Splunk Search 05-11-2018
0 3
0
3
paddygriffin
Using an append command, it seems I can successfully set the maxout to a number less than 50000, but not increase it ...
by paddygriffin Path Finder in Splunk Search 05-11-2018
0 8
0
8
rndp89
i have 30 servers, out of which I want to monitor splunk agents of only 4 servers i have the following query. index...
by rndp89 Explorer in Splunk Search 05-11-2018
0 2
0
2
radekpitr
Hello All, I would need help to join two efferent events together and create one table with all information from bot...
by radekpitr New Member in Splunk Search 05-11-2018
0 6
0
6
ronnybruska
Hi there, i created a table: Date | Value1 | Value2 | Percentage The last line should be: "total" | total of Valu...
by ronnybruska New Member in Splunk Search 05-11-2018
0 2
0
2
garujoey
Hi there, I am a newbie in Splunk and trying to do some search using the rex. The log body is like: blah blah Dest...
by garujoey Engager in Splunk Search 05-10-2018
0 6
0
6
mjones414
I'm trying to add more specific data to a particular field by replacing it with another value when other conditions e...
by mjones414 Contributor in Splunk Search 05-10-2018
0 1
0
1
Splunk_rocks
I need to construct props and transforms for below sample search. index=blaa sourcetype=my_source | rex field=X__Ed...
by Splunk_rocks Path Finder in Splunk Search 05-10-2018
0 11
0
11
santosh_hb
I am getting the following error due to which, the log file is not getting indexed daily. Log file name is like: db...
by santosh_hb Explorer in Splunk Search 05-10-2018
0 5
0
5
brdr
I have a lookup table with 3 fields: host, user, p_time The events in the lookup table will contain 12 months of dat...
by brdr Contributor in Splunk Search 05-10-2018
1 6
1
6
jon_d_irish_ctr
I want to setup a search that determines which countries have connected to my network over the past "x" hours, and th...
by jon_d_irish_ctr Path Finder in Splunk Search 05-10-2018
0 7
0
7
skallaje
So, I have this following format for my log entries. FIELD1-FIELD2-FIELD3-FIELD4-FIELD5-FIELD6 and logs are like .....
by skallaje Engager in Splunk Search 05-10-2018
0 2
0
2
macadminrohit
This is my regex : Test Name\","value":"(?.*)},{"key" and my test string is : {"key":"Test Name","value":"GET:Corp...
by macadminrohit Contributor in Splunk Search 05-10-2018
0 4
0
4
Get Updates on the Splunk Community!

Casting Call: Compete in Cyber Games

Lights, Camera, SecOps: Apply to Compete in Cyber Games     Think you have what it takes to beat the clock? ...

Data Management Digest – June 2026

Welcome to the June 2026 edition of Data Management Digest! This month’s update is short and sweet, with a ...

Think Like an Architect: Introducing the Splunk Certified Cybersecurity Defense ...

In cybersecurity, defenders respond to threats. Architects design the systems that stop them.    As ...