<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to display a table icon for a certain process status? in Splunk Search</title>
    <link>https://community.splunk.com/t5/Splunk-Search/How-to-display-a-table-icon-for-a-certain-process-status/m-p/201382#M58354</link>
    <description>&lt;P&gt;Hi proylea,&lt;/P&gt;

&lt;P&gt;you would need a lookup to keep track of the expected processes and use this lookup as comparison to the search.&lt;BR /&gt;
Take a look at this answer &lt;A href="http://answers.splunk.com/answers/73268/search-for-hosts-in-a-lookup-but-not-in-splunk.html"&gt;http://answers.splunk.com/answers/73268/search-for-hosts-in-a-lookup-but-not-in-splunk.html&lt;/A&gt; to get an idea how it can be done; this was done to get hosts from a lookup which do not show in a search.&lt;/P&gt;

&lt;P&gt;Hope this helps ....&lt;/P&gt;

&lt;P&gt;cheers, MuS&lt;/P&gt;</description>
    <pubDate>Mon, 31 Aug 2015 03:06:57 GMT</pubDate>
    <dc:creator>MuS</dc:creator>
    <dc:date>2015-08-31T03:06:57Z</dc:date>
    <item>
      <title>How to display a table icon for a certain process status?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/How-to-display-a-table-icon-for-a-certain-process-status/m-p/201381#M58353</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;

&lt;P&gt;I would like to show a list of processes and use the table icon set to show the status of the process, either existing (running) or not:&lt;BR /&gt;
Green Tick for existing and Red Cross for not.&lt;/P&gt;

&lt;P&gt;I can understand how to show a running process with a green tick next to it, but how do you show a non existing process with a red cross next to it? I'm assuming I would need to compare what was or should be existing with what is currently running.&lt;/P&gt;

&lt;P&gt;An example of how to do this would be greatly appreciated.&lt;/P&gt;

&lt;P&gt;Kind Regards&lt;BR /&gt;
Peter&lt;/P&gt;</description>
      <pubDate>Mon, 31 Aug 2015 02:43:52 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/How-to-display-a-table-icon-for-a-certain-process-status/m-p/201381#M58353</guid>
      <dc:creator>proylea</dc:creator>
      <dc:date>2015-08-31T02:43:52Z</dc:date>
    </item>
    <item>
      <title>Re: How to display a table icon for a certain process status?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/How-to-display-a-table-icon-for-a-certain-process-status/m-p/201382#M58354</link>
      <description>&lt;P&gt;Hi proylea,&lt;/P&gt;

&lt;P&gt;you would need a lookup to keep track of the expected processes and use this lookup as comparison to the search.&lt;BR /&gt;
Take a look at this answer &lt;A href="http://answers.splunk.com/answers/73268/search-for-hosts-in-a-lookup-but-not-in-splunk.html"&gt;http://answers.splunk.com/answers/73268/search-for-hosts-in-a-lookup-but-not-in-splunk.html&lt;/A&gt; to get an idea how it can be done; this was done to get hosts from a lookup which do not show in a search.&lt;/P&gt;

&lt;P&gt;Hope this helps ....&lt;/P&gt;

&lt;P&gt;cheers, MuS&lt;/P&gt;</description>
      <pubDate>Mon, 31 Aug 2015 03:06:57 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/How-to-display-a-table-icon-for-a-certain-process-status/m-p/201382#M58354</guid>
      <dc:creator>MuS</dc:creator>
      <dc:date>2015-08-31T03:06:57Z</dc:date>
    </item>
    <item>
      <title>Re: How to display a table icon for a certain process status?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/How-to-display-a-table-icon-for-a-certain-process-status/m-p/201383#M58355</link>
      <description>&lt;P&gt;Thanks that's exactly what I was looking for&lt;/P&gt;</description>
      <pubDate>Mon, 31 Aug 2015 23:54:54 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/How-to-display-a-table-icon-for-a-certain-process-status/m-p/201383#M58355</guid>
      <dc:creator>proylea</dc:creator>
      <dc:date>2015-08-31T23:54:54Z</dc:date>
    </item>
  </channel>
</rss>

