Can anyone please help me with a question that I have. Can I use a macro in the event type in Splunk. I am trying but looks like there is some issue.
A very small example, in my eventtype
[abcEventType]search = index=`index`
and in the query behind my panel I have:
eventtype=abcEventType| stats count
I am on Splunk on prem version 220.127.116.11
You said there is an issue. What is it?