<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Is there an option to add text filter with different type of matching in dashboard? in Splunk Dev</title>
    <link>https://community.splunk.com/t5/Splunk-Dev/Is-there-an-option-to-add-text-filter-with-different-type-of/m-p/633325#M10959</link>
    <description>&lt;P&gt;Hi colleagues,&lt;/P&gt;
&lt;P&gt;Is there option to add text filter with different type of matching, like it is in Excel (containts, doesnt contain, begginig with, end with, etc.) to dashboard.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="LIS_0-1678016695501.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/24193i1515F49526F50F2C/image-size/medium?v=v2&amp;amp;px=400" role="button" title="LIS_0-1678016695501.png" alt="LIS_0-1678016695501.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 06 Mar 2023 14:54:02 GMT</pubDate>
    <dc:creator>LIS</dc:creator>
    <dc:date>2023-03-06T14:54:02Z</dc:date>
    <item>
      <title>Is there an option to add text filter with different type of matching in dashboard?</title>
      <link>https://community.splunk.com/t5/Splunk-Dev/Is-there-an-option-to-add-text-filter-with-different-type-of/m-p/633325#M10959</link>
      <description>&lt;P&gt;Hi colleagues,&lt;/P&gt;
&lt;P&gt;Is there option to add text filter with different type of matching, like it is in Excel (containts, doesnt contain, begginig with, end with, etc.) to dashboard.&lt;/P&gt;
&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="LIS_0-1678016695501.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/24193i1515F49526F50F2C/image-size/medium?v=v2&amp;amp;px=400" role="button" title="LIS_0-1678016695501.png" alt="LIS_0-1678016695501.png" /&gt;&lt;/span&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 Mar 2023 14:54:02 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Dev/Is-there-an-option-to-add-text-filter-with-different-type-of/m-p/633325#M10959</guid>
      <dc:creator>LIS</dc:creator>
      <dc:date>2023-03-06T14:54:02Z</dc:date>
    </item>
    <item>
      <title>Re: Text filter with different type of matching in dashboard.</title>
      <link>https://community.splunk.com/t5/Splunk-Dev/Is-there-an-option-to-add-text-filter-with-different-type-of/m-p/633328#M10960</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/240613"&gt;@LIS&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;In classic dashboards, you can use form inputs combined with the where command:&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;&amp;lt;form version="1.1"&amp;gt;
  &amp;lt;label&amp;gt;LIS_filters&amp;lt;/label&amp;gt;
  &amp;lt;fieldset submitButton="true"&amp;gt;
    &amp;lt;input type="dropdown" token="filter_tok"&amp;gt;
      &amp;lt;label&amp;gt;Filter&amp;lt;/label&amp;gt;
      &amp;lt;choice value="eq"&amp;gt;Equals&amp;lt;/choice&amp;gt;
      &amp;lt;choice value="ne"&amp;gt;Does Not Equal&amp;lt;/choice&amp;gt;
      &amp;lt;choice value="co"&amp;gt;Contains&amp;lt;/choice&amp;gt;
      &amp;lt;choice value="nc"&amp;gt;Does Not Contain&amp;lt;/choice&amp;gt;
      &amp;lt;choice value="bw"&amp;gt;Begins With&amp;lt;/choice&amp;gt;
      &amp;lt;choice value="ew"&amp;gt;Ends With&amp;lt;/choice&amp;gt;
      &amp;lt;choice value="li"&amp;gt;Length is&amp;lt;/choice&amp;gt;
      &amp;lt;choice value="lg"&amp;gt;Length is greater than&amp;lt;/choice&amp;gt;
      &amp;lt;choice value="ll"&amp;gt;Length is less than&amp;lt;/choice&amp;gt;
      &amp;lt;choice value="nb"&amp;gt;Does Not Begin With&amp;lt;/choice&amp;gt;
      &amp;lt;choice value="nw"&amp;gt;Does Not End With&amp;lt;/choice&amp;gt;
    &amp;lt;/input&amp;gt;
    &amp;lt;input type="text" token="field_tok"&amp;gt;
      &amp;lt;label&amp;gt;Field&amp;lt;/label&amp;gt;
    &amp;lt;/input&amp;gt;
    &amp;lt;input type="text" token="value_tok"&amp;gt;
      &amp;lt;label&amp;gt;Value&amp;lt;/label&amp;gt;
    &amp;lt;/input&amp;gt;
    &amp;lt;input type="time" token="time_tok"&amp;gt;
      &amp;lt;label&amp;gt;&amp;lt;/label&amp;gt;
      &amp;lt;default&amp;gt;
        &amp;lt;earliest&amp;gt;-24h@h&amp;lt;/earliest&amp;gt;
        &amp;lt;latest&amp;gt;now&amp;lt;/latest&amp;gt;
      &amp;lt;/default&amp;gt;
    &amp;lt;/input&amp;gt;
  &amp;lt;/fieldset&amp;gt;
  &amp;lt;row&amp;gt;
    &amp;lt;panel&amp;gt;
      &amp;lt;event&amp;gt;
        &amp;lt;search&amp;gt;
          &amp;lt;query&amp;gt;index=main
``` assign value_tok to field to prevent errors in tonumber() when parsing literals ```
| eval _value_tok="$value_tok$" 
| where coalesce(
    case(
    "$filter_tok$"=="eq", '$field_tok$'==_value_tok,
    "$filter_tok$"=="ne", '$field_tok$'!=_value_tok,
    "$filter_tok$"=="co", like('$field_tok$', "%"._value_tok."%"),
    "$filter_tok$"=="nc", NOT like('$field_tok$', "%"._value_tok."%"),
    "$filter_tok$"=="bw", like('$field_tok$', _value_tok."%"),
    "$filter_tok$"=="ew", like('$field_tok$', "%"._value_tok),
    "$filter_tok$"=="li", len('$field_tok$')==coalesce(tonumber(trim(_value_tok)), -1),
    "$filter_tok$"=="lg", len('$field_tok$')&amp;amp;gt;coalesce(tonumber(trim(_value_tok)), 9223372036854775807),
    "$filter_tok$"=="ll", len('$field_tok$')&amp;amp;lt;coalesce(tonumber(trim(_value_tok)), -1),
    "$filter_tok$"=="nb", NOT like('$field_tok$', _value_tok."%"),
    "$filter_tok$"=="nw", NOT like('$field_tok$', "%"._value_tok)
    ),
    false())&amp;lt;/query&amp;gt;
          &amp;lt;earliest&amp;gt;$time_tok.earliest$&amp;lt;/earliest&amp;gt;
          &amp;lt;latest&amp;gt;$time_tok.latest$&amp;lt;/latest&amp;gt;
        &amp;lt;/search&amp;gt;
        &amp;lt;option name="list.drilldown"&amp;gt;none&amp;lt;/option&amp;gt;
        &amp;lt;option name="refresh.display"&amp;gt;progressbar&amp;lt;/option&amp;gt;
      &amp;lt;/event&amp;gt;
    &amp;lt;/panel&amp;gt;
  &amp;lt;/row&amp;gt;
&amp;lt;/form&amp;gt;&lt;/LI-CODE&gt;&lt;P&gt;The logic is embedded in the case() function. For example, "host" "Begins With" "spl" is translated to the following search:&lt;/P&gt;&lt;LI-CODE lang="javascript"&gt;index=main
``` assign value_tok to field to prevent errors in tonumber() when parsing literals ```
| eval _value_tok="spl" 
| where coalesce(
    case(
    "bw"=="eq", 'host'==_value_tok,
    "bw"=="ne", 'host'!=_value_tok,
    "bw"=="co", like('host', "%"._value_tok."%"),
    "bw"=="nc", NOT like('host', "%"._value_tok."%"),
    "bw"=="bw", like('host', _value_tok."%"),
    "bw"=="ew", like('host', "%"._value_tok),
    "bw"=="li", len('host')==coalesce(tonumber(trim(_value_tok)), -1),
    "bw"=="lg", len('host')&amp;gt;coalesce(tonumber(trim(_value_tok)), 9223372036854775807),
    "bw"=="ll", len('host')&amp;lt;coalesce(tonumber(trim(_value_tok)), -1),
    "bw"=="nb", NOT like('host', _value_tok."%"),
    "bw"=="nw", NOT like('host', "%"._value_tok)
    ),
    false())&lt;/LI-CODE&gt;&lt;P&gt;The tonumber() function returns NULL if a field value is not a number but returns an error if a literal value is not a number. To prevent search errors, I've assigned the field value token, value_tok, to a new field, _value_tok. If this field name conflicts with a field name in your events, you can change the name and update the where command.&lt;/P&gt;</description>
      <pubDate>Sun, 05 Mar 2023 15:58:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Dev/Is-there-an-option-to-add-text-filter-with-different-type-of/m-p/633328#M10960</guid>
      <dc:creator>tscroggins</dc:creator>
      <dc:date>2023-03-05T15:58:28Z</dc:date>
    </item>
    <item>
      <title>Re: Text filter with different type of matching in dashboard.</title>
      <link>https://community.splunk.com/t5/Splunk-Dev/Is-there-an-option-to-add-text-filter-with-different-type-of/m-p/633473#M10961</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/49493"&gt;@tscroggins&lt;/a&gt;&amp;nbsp;&lt;SPAN&gt;,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;It is so perfect and simple(since it was invented by somebody&lt;span class="lia-unicode-emoji" title=":smiling_face_with_smiling_eyes:"&gt;😊&lt;/span&gt;). Thank you very much!&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;I have adjusted it a bit to fit to my case, because have faced "waiting for input"&amp;nbsp; in my table.&amp;nbsp;&lt;/SPAN&gt;&lt;/P&gt;&lt;PRE&gt;&lt;SPAN&gt;&amp;lt;set &lt;/SPAN&gt;&lt;SPAN&gt;token&lt;/SPAN&gt;&lt;SPAN&gt;="field_tok"&lt;/SPAN&gt;&lt;SPAN&gt;&amp;gt;&amp;lt;/set&amp;gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&amp;lt;set &lt;/SPAN&gt;&lt;SPAN&gt;token&lt;/SPAN&gt;&lt;SPAN&gt;="value_tok"&lt;/SPAN&gt;&lt;SPAN&gt;&amp;gt;&amp;lt;/set&amp;gt;&lt;/SPAN&gt;&lt;/PRE&gt;&lt;PRE&gt;&lt;SPAN&gt;&amp;lt;input &lt;/SPAN&gt;&lt;SPAN&gt;type&lt;/SPAN&gt;&lt;SPAN&gt;="dropdown" &lt;/SPAN&gt;&lt;SPAN&gt;token&lt;/SPAN&gt;&lt;SPAN&gt;="filter_tok" &lt;/SPAN&gt;&lt;SPAN&gt;&amp;gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;  &amp;lt;label&amp;gt;&lt;/SPAN&gt;Filter&lt;SPAN&gt;&amp;lt;/label&amp;gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;  &amp;lt;choice &lt;/SPAN&gt;&lt;SPAN&gt;value&lt;/SPAN&gt;&lt;SPAN&gt;="eq"&lt;/SPAN&gt;&lt;SPAN&gt;&amp;gt;&lt;/SPAN&gt;Equals&lt;SPAN&gt;&amp;lt;/choice&amp;gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;  &amp;lt;choice &lt;/SPAN&gt;&lt;SPAN&gt;value&lt;/SPAN&gt;&lt;SPAN&gt;="ne"&lt;/SPAN&gt;&lt;SPAN&gt;&amp;gt;&lt;/SPAN&gt;Does Not Equal&lt;SPAN&gt;&amp;lt;/choice&amp;gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;  &amp;lt;choice &lt;/SPAN&gt;&lt;SPAN&gt;value&lt;/SPAN&gt;&lt;SPAN&gt;="co"&lt;/SPAN&gt;&lt;SPAN&gt;&amp;gt;&lt;/SPAN&gt;Contains&lt;SPAN&gt;&amp;lt;/choice&amp;gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;  &amp;lt;choice &lt;/SPAN&gt;&lt;SPAN&gt;value&lt;/SPAN&gt;&lt;SPAN&gt;="nc"&lt;/SPAN&gt;&lt;SPAN&gt;&amp;gt;&lt;/SPAN&gt;Does Not Contain&lt;SPAN&gt;&amp;lt;/choice&amp;gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;  &amp;lt;choice &lt;/SPAN&gt;&lt;SPAN&gt;value&lt;/SPAN&gt;&lt;SPAN&gt;="bw"&lt;/SPAN&gt;&lt;SPAN&gt;&amp;gt;&lt;/SPAN&gt;Begins With&lt;SPAN&gt;&amp;lt;/choice&amp;gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;  &amp;lt;choice &lt;/SPAN&gt;&lt;SPAN&gt;value&lt;/SPAN&gt;&lt;SPAN&gt;="ew"&lt;/SPAN&gt;&lt;SPAN&gt;&amp;gt;&lt;/SPAN&gt;Ends With&lt;SPAN&gt;&amp;lt;/choice&amp;gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;  &amp;lt;choice &lt;/SPAN&gt;&lt;SPAN&gt;value&lt;/SPAN&gt;&lt;SPAN&gt;="li"&lt;/SPAN&gt;&lt;SPAN&gt;&amp;gt;&lt;/SPAN&gt;Length is&lt;SPAN&gt;&amp;lt;/choice&amp;gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;  &amp;lt;choice &lt;/SPAN&gt;&lt;SPAN&gt;value&lt;/SPAN&gt;&lt;SPAN&gt;="lg"&lt;/SPAN&gt;&lt;SPAN&gt;&amp;gt;&lt;/SPAN&gt;Length is greater than&lt;SPAN&gt;&amp;lt;/choice&amp;gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;  &amp;lt;choice &lt;/SPAN&gt;&lt;SPAN&gt;value&lt;/SPAN&gt;&lt;SPAN&gt;="ll"&lt;/SPAN&gt;&lt;SPAN&gt;&amp;gt;&lt;/SPAN&gt;Length is less than&lt;SPAN&gt;&amp;lt;/choice&amp;gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;  &amp;lt;choice &lt;/SPAN&gt;&lt;SPAN&gt;value&lt;/SPAN&gt;&lt;SPAN&gt;="nb"&lt;/SPAN&gt;&lt;SPAN&gt;&amp;gt;&lt;/SPAN&gt;Does Not Begin With&lt;SPAN&gt;&amp;lt;/choice&amp;gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;  &amp;lt;choice &lt;/SPAN&gt;&lt;SPAN&gt;value&lt;/SPAN&gt;&lt;SPAN&gt;="nw"&lt;/SPAN&gt;&lt;SPAN&gt;&amp;gt;&lt;/SPAN&gt;Does Not End With&lt;SPAN&gt;&amp;lt;/choice&amp;gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;  &amp;lt;choice &lt;/SPAN&gt;&lt;SPAN&gt;value&lt;/SPAN&gt;&lt;SPAN&gt;="ps"&lt;/SPAN&gt;&lt;SPAN&gt;&amp;gt;&lt;/SPAN&gt;Pls select&lt;SPAN&gt;&amp;lt;/choice&amp;gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;   &amp;lt;default&amp;gt;&lt;/SPAN&gt;Pls select&lt;SPAN&gt;&amp;lt;/default&amp;gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;SPAN&gt;&amp;lt;/input&amp;gt;&lt;/SPAN&gt;&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;PRE&gt;     | where coalesce(&lt;BR /&gt;case(&lt;BR /&gt;"$filter_tok$"=="eq", '$field_tok$'==_value_tok,&lt;BR /&gt;"$filter_tok$"=="ne", '$field_tok$'!=_value_tok,&lt;BR /&gt;"$filter_tok$"=="co", like('$field_tok$', "%"._value_tok."%"),&lt;BR /&gt;"$filter_tok$"=="nc", NOT like('$field_tok$', "%"._value_tok."%"),&lt;BR /&gt;"$filter_tok$"=="bw", like('$field_tok$', _value_tok."%"),&lt;BR /&gt;"$filter_tok$"=="ew", like('$field_tok$', "%"._value_tok),&lt;BR /&gt;"$filter_tok$"=="li", len('$field_tok$')==coalesce(tonumber(trim(_value_tok)), -1),&lt;BR /&gt;"$filter_tok$"=="lg", len('$field_tok$')&lt;SPAN&gt;&amp;amp;gt;&lt;/SPAN&gt;coalesce(tonumber(trim(_value_tok)), 9223372036854775807),&lt;BR /&gt;"$filter_tok$"=="ll", len('$field_tok$')&lt;SPAN&gt;&amp;amp;lt;&lt;/SPAN&gt;coalesce(tonumber(trim(_value_tok)), -1),&lt;BR /&gt;"$filter_tok$"=="nb", NOT like('$field_tok$', _value_tok."%"),&lt;BR /&gt;"$filter_tok$"=="nw", NOT like('$field_tok$', "%"._value_tok),&lt;BR /&gt;"$filter_tok$"=="ps", (1==1)&lt;BR /&gt;),&lt;BR /&gt;false())&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 Mar 2023 19:37:30 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Dev/Is-there-an-option-to-add-text-filter-with-different-type-of/m-p/633473#M10961</guid>
      <dc:creator>LIS</dc:creator>
      <dc:date>2023-03-06T19:37:30Z</dc:date>
    </item>
    <item>
      <title>Re: Text filter with different type of matching in dashboard.</title>
      <link>https://community.splunk.com/t5/Splunk-Dev/Is-there-an-option-to-add-text-filter-with-different-type-of/m-p/633485#M10962</link>
      <description>&lt;P&gt;You're sooooo overcomplicating it &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&lt;/P&gt;&lt;P&gt;Tokens are just inserted in the apropriate placeholders. Use it.&lt;/P&gt;&lt;PRE&gt;&amp;lt;form version="1.1" theme="dark"&amp;gt;&lt;BR /&gt;&amp;lt;label&amp;gt;test2&amp;lt;/label&amp;gt;&lt;BR /&gt;&amp;lt;fieldset submitButton="false"&amp;gt;&lt;BR /&gt;&amp;lt;input type="dropdown" token="cond"&amp;gt;&lt;BR /&gt;&amp;lt;label&amp;gt;condition&amp;lt;/label&amp;gt;&lt;BR /&gt;&amp;lt;choice value="&amp;amp;gt;"&amp;gt;greater than&amp;lt;/choice&amp;gt;&lt;BR /&gt;&amp;lt;choice value="&amp;amp;lt;"&amp;gt;lower than&amp;lt;/choice&amp;gt;&lt;BR /&gt;&amp;lt;/input&amp;gt;&lt;BR /&gt;&amp;lt;/fieldset&amp;gt;&lt;BR /&gt;&amp;lt;row&amp;gt;&lt;BR /&gt;&amp;lt;panel&amp;gt;&lt;BR /&gt;&amp;lt;table&amp;gt;&lt;BR /&gt;&amp;lt;search&amp;gt;&lt;BR /&gt;&amp;lt;query&amp;gt;| tstats count where index=* by sourcetype &lt;BR /&gt;| where count $cond$ 10&amp;lt;/query&amp;gt;&lt;BR /&gt;&amp;lt;earliest&amp;gt;-24h@h&amp;lt;/earliest&amp;gt;&lt;BR /&gt;&amp;lt;latest&amp;gt;now&amp;lt;/latest&amp;gt;&lt;BR /&gt;&amp;lt;/search&amp;gt;&lt;BR /&gt;&amp;lt;option name="drilldown"&amp;gt;none&amp;lt;/option&amp;gt;&lt;BR /&gt;&amp;lt;/table&amp;gt;&lt;BR /&gt;&amp;lt;/panel&amp;gt;&lt;BR /&gt;&amp;lt;/row&amp;gt;&lt;BR /&gt;&amp;lt;/form&amp;gt;&lt;/PRE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 06 Mar 2023 20:49:42 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Dev/Is-there-an-option-to-add-text-filter-with-different-type-of/m-p/633485#M10962</guid>
      <dc:creator>PickleRick</dc:creator>
      <dc:date>2023-03-06T20:49:42Z</dc:date>
    </item>
    <item>
      <title>Re: Text filter with different type of matching in dashboard.</title>
      <link>https://community.splunk.com/t5/Splunk-Dev/Is-there-an-option-to-add-text-filter-with-different-type-of/m-p/633493#M10963</link>
      <description>&lt;P&gt;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/231884"&gt;@PickleRick&lt;/a&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Indeed! But my goal was to be explanatory, not clever. &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt; There may be other requirements to&amp;nbsp;meet with respect to Excel-like (or non-Excel-like) comparisons, input validation, etc. If I were coding "greater than" and "[less] than," for example, I'd want to know if the comparison was lexical or numerical? If lexical, what collation should be used? And so on....&lt;/P&gt;</description>
      <pubDate>Mon, 06 Mar 2023 22:14:01 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Dev/Is-there-an-option-to-add-text-filter-with-different-type-of/m-p/633493#M10963</guid>
      <dc:creator>tscroggins</dc:creator>
      <dc:date>2023-03-06T22:14:01Z</dc:date>
    </item>
  </channel>
</rss>

