Say I'm just trying to find if anything in Splunk is showing number "12345678". Isn't there a way to query a simple search trying to find that?
Or if I'm looking for a specific user; is there a way to write a query like "jsmith@gmail.com". Essentially looking for anything associated with this username or anything associated with that number above.
 
					
				
		
 
		
		
		
		
		
	
			
		
		
			
					
		Hi @kruane,
yes all the things you said are possible.
To understand how to do it I hint to follow the Splunk Search Tutorial (https://docs.splunk.com/Documentation/SplunkCloud/latest/SearchTutorial), to understand how to use SPL, otherwise, you can search on the Splunk Channel on YouTube some interesting video (e.g.: https://www.youtube.com/watch?v=xtyH_6iMxwA).
Ciao.
Giuseppe
