Skip to content

Tag: SPL

Splunk Search Command Of The Week: bin

Using the bin Command

Getting Started Splunk is a powerful data analysis and visualization tool that empowers users to extract valuable insights from vast amounts of data. To help

Splunk Search Command Of The Week: eventstats

Using the eventstats Command

Splunk, a robust data analysis and visualization tool, offers a spectrum of commands to extract meaningful insights from extensive datasets. Among these commands, the eventstats

Splunk Search Command Of The Week: Map

Using the map Command

When it comes to correlating information in searches to uncover unique patterns, there are several Splunk commands are commonly employed. For instance, you might opt

Splunk Metrics Indexes Series: Part 2: Creating Metrics Indexes

Creating Metrics Indexes

This topic is split into a nine-part series to improve readability – this second installment covers how to create a metrics index. Parts 1-3 of

Splunk Metrics Indexes Series: Part 1: Comparing Events & Metrics Indexes

Events vs Metrics Indexes

This topic is split into a nine-part series to improve readability – this is the first installment in the series. Parts 1-3 of this series

Splunk Search Command Of The Week: mvjoin

Using the mvjoin Command

Data that has multiple values in a single field can be difficult to view in a report. Using the mvjoin command from Splunk’s Search Processing

Splunk Search Command Of The Week: coalesce

Using the coalesce Command

Data fields that have similar information can have different field names. While the Splunk Common Information Model (CIM) exists to address this type of situation,

Splunk Search Command Of The Week: where

Using the where Command

What is the Splunk where Command? The Splunk where command is one of several options used to filter search results. It uses eval-expressions that return