Hi everyone!
I'm fairly new to Splunk. I just wanted to ask about the feasibility of my use case and how can I make it work.
Use case:
Will this be possible? If yes, do you have links that I can use so that I can just follow on how can I achieve my use case?
Sample CSV file.
Application,ServerName,Process,State
AppA,ServerA,ServiceA,Running
AppA,ServerA,ServiceB,Running
AppA,ServerA,ServiceC,Running
AppA,ServerA,ServiceD,Stopped
AppA,ServerB,ServiceA,Running
AppA,ServerB,ServiceB,Stopped
AppA,ServerB,ServiceC,Stopped
AppA,ServerB,ServiceD,Stopped
Hello @dcresido
You have two options:
So you have two options to solve the above problem. Choose which ever seems more feasible to you.