Dashboards & Visualizations

I want to compare events upload to Splunk in two different times. and compare those and return match and new events?

karu0711
Communicator

I am uploading DevOps scan result to Splunk, and these scans also have new result and some old flaw that not remediated. How can I match events and return unique.   
 

example SPL

Index= demo sourcetype= demoscan

table date, aaa, ccc, xxx, yyy, zzz

Labels (3)
0 Karma

PaulPanther
Motivator

@karu0711 Could you please provide some sample events that you wanna match,

0 Karma
Get Updates on the Splunk Community!

Best Strategies to Optimize Observability Costs

 Join us on Tuesday, May 6, 2025, at 11 AM PDT / 2 PM EDT for an insightful session on optimizing ...

Fueling your curiosity with new Splunk ILT and eLearning courses

At Splunk Education, we’re driven by curiosity—both ours and yours! That’s why we’re committed to delivering ...

Splunk AI Assistant for SPL 1.1.0 | Now Personalized to Your Environment for Greater ...

Splunk AI Assistant for SPL has transformed how users interact with Splunk, making it easier than ever to ...