Hi,
How can we extract a list of open episodes in splunk itsi.Please
Thanks!
This post is old but unanswered. I did it this way:
index=itsi_grouped_alerts
| lookup itsi_notable_group_user_lookup event_identifier_hash as itsi_group_id
| search status=1