5 d

Assuming that you are getting?

Comparing values in two columns of two different Splunk searches Splunk Log - Date ?

Feb 14, 2019 · 'isTrue field' is always assigned 0 regardless of whether field '5m_value' is greater than or not than '15m_prev_upperBound' field! I don't know what I am doing wrong. So, I have JSON data like below: catDevices: [ { model: A1_1234 Name: ZASNJHCDNA } { model: A1_5678 Name: JNDIHUEDHNJ }] Devices : [ JNDIHUEDHNJ NVBBVUYVBHI ] I want to compare "Devices" with caDevices{} Feb 20, 2024 · Hi I have a query that need to compare count of PF field for two log file: on splunk I have two query that create this table, the issue is need to "PF" that equal in query1 and query2 show in same row: current result: hostname1 PF1 count1 hostname2 PF2 count2 host1 red 50 host. Sometimes, an error-log has the same GUID as a times-log. The answers you are getting have to do with testing whether fields on a single event are equal. looking to have on' x' axis month wise and on 'y' axis sales and country with different colors on bar chart. when do tickets go on sale for taylor swift 2024 Aug 28, 2023 · Hi, I have two fields: field 1 and field 2 field1 field 2 DEF DD\DEF. 2) I think this part is also going to cause you a headache as you are not comparing integers with integers, just strings with strings: where (now_time>=Due_Date_Time) Can you try this instead? I have some log-data including a GUID. Field1 Field2 I have 2 fields as below Field1 Field2 abc abc def jkl ghi wxy jkl pqr wxy I have to compare values in Field1 with all values in Field2 and return "Success" if both are same and "Fail" if both are not same. Solved: I would like to compare the result count of two search queries in one column chart (one column for each query and day) The two queries are: Hello Splunkers, I am trying to compare two multi value ID columns, and return true when at least of the values matches between these 2 ID columns. richh des *Login (?)" | chart count over succeeded. The sourcetype 2 contains a dynamic list of malicious domains. Any team that fields more than 11 players per play rece. Below one of example from the results from two fields: current_conf field: _Name:REQ000004543448-4614240-shrepoint. Also, sometimes either date could be blank (and in a few cases, they're both blank). sonicdrivein careers Syntax This command will allow you to run a subsearch and "import" a columns into you base search. ….

Post Opinion