i have 2 files indexed as 2 different source types.
In Sourcetype1 i created:
1. Field1 presents the value of a file let's say example.txt
2. Field2 presents the value of the result let's say [OK]
In Sourcetype2 i created:
Field1 presents the value of a file let's say example.txt
I would like to create a search that If Field1 value from sourcetype1 = Field1 value from sourcetype2 list Field2 value from sourcetype1
My final goal is to create a table that lists the event details (time, user, files, results) the last column will be the result that is a little bit more trickier to achieve.