Using Splunk

Using Splunk
Category Activity
avikc100
I want to replace hard coded text "Today" by current system date in splunk report. Please help if it is possible.Plea...
by avikc100 Path Finder in Splunk Search Saturday
0 6
0
6
pck_npluyaud
Hello.For reasons of JSON log splitting, I have a problem with a complex structure.The integration is in a forwarder ...
by pck_npluyaud Explorer in Splunk Search Saturday
0 8
0
8
mint_choco
Hi, I try to display the number of events per day from multiple indexes.I wrote the below SPL, but when all index val...
by mint_choco Observer in Splunk Search Friday
0 0
0
0
paleewawa
Recently our splunk security alert integration has stopped working last month (December) where we'd send an alert aut...
by paleewawa Explorer in Alerting Friday
1 4
1
4
nithys
Hi Team,Currently in my dashboard i am using two separate query for data and search lambda separetly and added to the...
by nithys Communicator in Splunk Search Friday
0 2
0
2
dlm
I have a unique situation with my customer. I want to create a lookup table that the customer can put  fields they wa...
by dlm Path Finder in Splunk Search Friday
0 7
0
7
Charlize
Added the config for the new metadata field in the inputs.conf file and created a fields.conf file to set the field a...
by Charlize Engager in Splunk Search Friday
0 4
0
4
onthakur
Hello Friends,I am trying to join the 2 logs with same index using trx_id(here it is called X_Correlation_ID ) but su...
by onthakur Explorer in Splunk Search Thursday
0 4
0
4
DarthHerm
I'm continuing to work on dashboards to report on user activity on our application. Going through the knowledgebase, ...
by DarthHerm Explorer in Dashboards & Visualizations Thursday
0 2
0
2
Punnu
I have data like this    id time Conatctsx14/22/2011 10:00676689x14/23/2011 11:00   I want it like as shown below : L...
by Punnu Path Finder in Splunk Search Thursday
0 1
0
1
JMPP
Hi Splunk Community team,Please help:I have N number of lookup lk_file_abc3477.csv, lk_file_xare000csv, lk_file_ppbc3...
by JMPP Explorer in Splunk Search Thursday
0 4
0
4
hartfoml
I want to use timechart to show a graph of the progress of an item so I use this command | timechart span=1w count b...
by hartfoml Motivator in Splunk Search Thursday
4 11
4
11
rfolkert
As the title suggests I have a scenario where I have two fields for a single value panel, the first is a number I wan...
by rfolkert Engager in Dashboards & Visualizations Thursday
0 2
0
2
kenbaugher
We have a setup of data going to splunk, where we query a number of files with varying numbers of fields (sometimes o...
by kenbaugher Path Finder in Splunk Search Thursday
0 3
0
3
Cheng2Ready
My search query:Index=xxx <xxxxxxx>|eval Date=strftime(_time,"%Y-%m-%d")| lookup holidays.csv HolidayDate as Date out...
by Cheng2Ready Communicator in Splunk Search a week ago
0 10
0
10
Punnu
Hi All,  I have created one query and it is working fine in search. I am sharing part of code from dashboard. In firs...
by Punnu Path Finder in Dashboards & Visualizations a week ago
0 31
0
31
ajmach343
I am looking to make a "pulse" dashboard for a host on my network, it will pulse green up when up and red when down.s...
by ajmach343 Explorer in Splunk Search a week ago
0 5
0
5
pjac1029
I created a  dashboard with an input  that allows the user to select a user field from a dropdown that's populated by...
by pjac1029 Explorer in Dashboards & Visualizations a week ago
0 4
0
4
ejwade
Hello!I'm looking to set the index parameter of the collect command with the value of a field from each event.Here's ...
by ejwade Contributor in Splunk Search a week ago
0 11
0
11
dipali
Users with an Admin or Power role are able to view the Seclytics dashboard provided by the "Seclytics for Splunk App"...
by dipali New Member in Dashboards & Visualizations a week ago
0 1
0
1
RowdyRodney
Hey all - I have a need to search for events in Splunk that contain two specific values in one field. I want the resu...
by RowdyRodney New Member in Splunk Search a week ago
0 2
0
2
ranafge
Hello Splunk Community,I'm seeking help regarding an issue I’m facing.The main problem is that vulnerability detectio...
by ranafge Loves-to-Learn in Dashboards & Visualizations a week ago
0 7
0
7
bsreeram
Hi,I have dataset in the following formatName,Status,TimestampABC,F, 04/24/2025 15:30:03ABC, R, 04/24/2025 15:15:01I ...
by bsreeram Engager in Splunk Search a week ago
0 7
0
7
akanksha01
Hi Team,I am using following CURL commandcurl -k -u admin:password -X POST https://<host>:<port>/servicesNS/akanksha_...
by akanksha01 New Member in Alerting a week ago
0 2
0
2
mark_groenveld
I would like to extract an ip address from a text field where the ip address has a trailing port number.The text is l...
by mark_groenveld Path Finder in Splunk Search a week ago
0 5
0
5
Splunk Learning

Splunk has training and education options for everyone, whether it's your first or fiftieth deployment.

Get Started

Announcements
Register for Upcoming Live Tech Talks! Security and Observability Editions are held every month.

How digitally resilient are you? Take a quick Digital Resilience Assessment to find out if you're prepared for disruption!
Get Updates on the Splunk Community!

The Latest Cisco Integrations With Splunk Platform!

Join us for an exciting tech talk where we’ll explore the latest integrations in Cisco + Splunk! We’ve ...

Enterprise Security Content Update (ESCU) | New Releases

In April, the Splunk Threat Research Team had 2 releases of new security content via the Enterprise Security ...

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

What are Community Office Hours?Community Office Hours is an interactive 60-minute Zoom series where ...
Top Karma Authors
OSZAR »