Splunk Search

Splunk Search
Community Activity
jmartens
I have the following data in a key (called test_key through a field extraction) I want to split: domain\firstname.la...
by jmartens Path Finder in Splunk Search 05-04-2018
0 5
0
5
karthi25
I have a splunk log as follows: ...||pool-2-thread-1|| INFO com.tmobile.sfdc.reports.batch.writer.LeadItemWriter - ...
by karthi25 Path Finder in Splunk Search 05-04-2018
0 7
0
7
Harinder_Singh
How we usually do business is; on our deployment server, we will create an app specific to its environment. Which can...
by Harinder_Singh New Member in Splunk Search 05-04-2018
0 11
0
11
darksky21
Hi, is there any way i could merge events base on common field? For example there are 6 events : Jun 1 2012 A:1 Ju...
by darksky21 Path Finder in Splunk Search 05-04-2018
2 3
2
3
HattrickNZ
How can I iterate through all the column names and replace space with underscore and replace :(colon space) with an u...
by HattrickNZ Motivator in Splunk Search 05-04-2018
0 1
0
1
shoermann
If I filter by Owner in View 'Searches, Reports, and Alerts' (Settings->Searches, Reports, and Alerts), there are no ...
by shoermann Explorer in Splunk Search 05-03-2018
0 1
0
1
skiller1234
Hello everybody! Trying to search for a series of strings - then count and display by host. I got this far: index=...
by skiller1234 Explorer in Splunk Search 05-03-2018
0 2
0
2
HattrickNZ
With multiple appendpipes how do I specify the number of rows above I want to apply it to? | makeresults | eval ...
by HattrickNZ Motivator in Splunk Search 05-03-2018
3 5
3
5
ksolanki88
...dedup Order_Number|search NOT[|inputlookup Order_Details_Lookup.csv|fields Order_Number]|table Order_Number Need ...
by ksolanki88 Explorer in Splunk Search 05-03-2018
3 12
3
12
johannesschilli
Hi, I'm writing a search command and need to log events from it to Splunk Web. I'm using the Python SDK in the curr...
by johannesschilli Engager in Splunk Search 05-03-2018
0 2
0
2
asuratos
I have two sourcetypes. first is a table of different pet types and respective animal. second is showing which pet is...
by asuratos New Member in Splunk Search 05-03-2018
0 6
0
6
wilcoxj
I was thinking that I could do a rex to grab everything up to the newline but I am trying to categorize the below out...
by wilcoxj New Member in Splunk Search 05-03-2018
0 6
0
6
panovattack
I am trying to find a good tutorial (yes, I have looked at the splunk documents) on writing a custom generating comma...
by panovattack Communicator in Splunk Search 05-03-2018
1 0
1
0
gmbenz0726
My file contains data like this: 85119.805: [GC pause (G1 Evacuation Pause) (young) 218M->81M(256M), 0.0159821 secs]...
by gmbenz0726 New Member in Splunk Search 05-03-2018
0 1
0
1
gu255363
When I run a query using stats count , I can see Events count as "636 events (4/26/18 8:00:00.000 AM to 5/3/18 8:3...
by gu255363 New Member in Splunk Search 05-03-2018
0 3
0
3
Hppjet
I would like to manipulate it to look like this:
by Hppjet Path Finder in Splunk Search 05-03-2018
0 7
0
7
splunk_hvijay
Hello, I have two timestamps , both are NOT _time. Received Date - 09/10/16Processed Date - 09/14/16 I need to calc...
by splunk_hvijay Explorer in Splunk Search 05-03-2018
1 8
1
8
Ghanayem1974
anyone have an idea on how to write up a search that will provide details on which logsource stopped reporting for th...
by Ghanayem1974 Path Finder in Splunk Search 05-03-2018
0 3
0
3
mlorrette
I'd like to run a search for each host in a list but only return the top result for each host. In a search, it coul...
by mlorrette Path Finder in Splunk Search 05-03-2018
0 7
0
7
yanlajeunesse
Hello, Let's say the company has two departments that used Splunk independantly, and now they want to merge them tog...
by yanlajeunesse Explorer in Splunk Search 05-03-2018
0 3
0
3
kannu
Dear splunkers , I have one field in which there is value like net = 192.168.128.0/24, from this field value pair i ...
by kannu Communicator in Splunk Search 05-03-2018
0 8
0
8
abhishekgupta61
Begin date - 2018-05-02 22:00:23.235371 End Date - 2018-05-02 22:01:33.815546 Expected Result should be - 70
by abhishekgupta61 Engager in Splunk Search 05-03-2018
0 1
0
1
landen99
I want to schedule a search so that it can be manually set to run without repetition during non-business hours when t...
by landen99 Motivator in Splunk Search 05-03-2018
0 6
0
6
atul_jain
I am sure this question is asked numerous times and there are number of answers around this but for some reason its n...
by atul_jain New Member in Splunk Search 05-03-2018
0 8
0
8
the_wolverine
I'm having trouble figuring out the proper syntax for specifying an exact date/time for my summary backfill search. ...
by the_wolverine Champion in Splunk Search 05-03-2018
1 4
1
4
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...