Some data is in combination of. If you want to coorelate between both indexes, you can use the search below to get you started. Webto search multiple indexes in splunk, use the `index` and `source` parameters.

Weboct 16, 2012 · you just specify those indexes on the search line: You will need to replace. Index=myindex | where fielda=fieldb. You can use the `search` command to search multiple indexes at once. Searching in multiple indexes. Webuse the where command to compare two fields. Websep 25, 2019 · splunk search.

Searching in multiple indexes. Webuse the where command to compare two fields. Websep 25, 2019 · splunk search. Keyword=blah index=index1 or index=index2 or index=index3 | foo by bar Webi have index called index1 which has sourcetype called sourcetype1 and another index called index2 with sourcetype called sourcetype2. Webfeb 20, 2019 · yes correct, this will search both indexes. This command requires at least two subsearches and allows only. I am trying to create a search to do the following: 1) look in a table. For not equal comparisons, you can specify the criteria in several ways.

Webfeb 20, 2019 · yes correct, this will search both indexes. This command requires at least two subsearches and allows only. I am trying to create a search to do the following: 1) look in a table. For not equal comparisons, you can specify the criteria in several ways.

For not equal comparisons, you can specify the criteria in several ways.