Splunk Search

Are field names always case sensitive and field values not case sensitive?

Path Finder

Hello,

Could you tell me what in Splunk is case sensitive?

My understanding is:
Field values are not case sensitive
Field names are always case sensitive, in the search command and in other commands.

thanks

1 Solution

SplunkTrust
SplunkTrust

Your understanding is correct.

---
If this reply helps you, an upvote would be appreciated.

View solution in original post

Esteemed Legend

Plain text after the search command is also case-insensitive.

SplunkTrust
SplunkTrust

Your understanding is correct.

---
If this reply helps you, an upvote would be appreciated.

View solution in original post