Hi guys, I'm using splunk 8.0
I want to create a command that can send some infos to another via web or api. I read the Dev page but hard to understand. Do you know some easy script?
Like I h...
How do you use the search= command with lpdasearch or lpdafilter? I seen examples where they are using search="(objectClass=user)" as to me I see that they are associating a field name to a group n...
Hi,
I am trying the following search syntax in Splunk to build out a report of our top 25 riskiest systems. But when I run it, I get “Unknown searchcommand 'isnull'” message.
Thanks in a...
Hi Everyone! I'm having a stuff time trying to figure out a searchcommand for this lab assignment. So I inputted in the search bar, (source=/var/log/auth.log session | top user) and I got the u...
Hi Splunkers,
I was wondering if it's possible to run a searchcommand only under specific conditions?
E.g. when a field containts a specific value or when total number of results are at least X...
I am trying to extract fields Environment and Service with below search and receiving the error 'SearchParser': Missing a searchcommand before '^'.
I got the rex command from Splunk field e...
hello
From the dropdown list below, I need to update search events with an eval case command
<input type="dropdown" token="debit" searchWhenChanged="true">
<l...
Hi! I am trying to use the "ipv6compress" command (https://splunkbase.splunk.com/app/4912/) on a Splunk 8.1.7.2 install, and I can see the tool tip, but when it runs, it says " Unknown searchcommand...