Query Library
New postPost queries you find useful or lookup examples to help get you started with searching your data.
Show all
Sort by votes
-
Metrics Operators Cheat Sheet Pinned5 votes 1 comment
-
New Log Operators Cheat Sheet Pinned2 votes 0 comments
-
Security-Related Queries for Palo Alto Networks and Other Firewalls4 votes 0 comments
-
convert decimal value to IP address2 votes 1 comment
-
Security-Related Queries for Windows2 votes 3 comments
-
Security-Related Queries for AWS2 votes 0 comments
-
Adding Test Values (or Test Fields) to Existing Log Lines2 votes 0 comments
-
Aggregating nested JSON object1 vote 0 comments
-
LAB-4 Conditional Operator unable to find results1 vote 0 comments
-
how to get the length of split in the field1 vote 1 comment
-
finding the ratio of aggregated result?1 vote 2 comments
-
Identify Known Crawlers/Bots in AWS Load Balancer (ALB or ELB) Logs1 vote 1 comment
-
How do I write a query to list all the keys in a json log?1 vote 15 comments
-
Query messages before and after errors1 vote 2 comments
-
Security-Related Queries for Linux1 vote 0 comments
-
Organizing Query LIbrary1 vote 1 comment
-
AD query for successful login from multiple IP’s1 vote 2 comments
-
Parsing URL correctly1 vote 3 comments
-
Top 10 IP Addresses by Timeslice1 vote 0 comments
-
IIS binded site query0 votes 1 comment
-
Parsing Regex Multi from Nested JSON Array Blobs0 votes 0 comments
-
Calculate a value from two log queries0 votes 1 comment
-
Enumerate Systems/Sources Monitored0 votes 1 comment
-
Splunk equivalent queries in Sumo0 votes 0 comments
-
"cannot parse string as number"0 votes 1 comment
-
Outer Join with lookups0 votes 0 comments
-
Tracking "Available IPv4 addresses" from an AWS Subnet0 votes 0 comments
-
Successful Logins Query Request0 votes 1 comment
-
Correlation search0 votes 1 comment