I am very new to splunk and need your help in resolving below issue.
I have two CSV files uploaded in splunk instance. Below mentioned is the file and its fileds.
My requirements is as below
Select set of values of A1,A2,A3 and O2 from Apple.csv and Orange.csv where A1=”X” and A2=”Y” and A3 = O1 and display values in a table.
A1 A2 A3
X Y 123
LP HJK 222
X Y 999
O1 O2
999 open
123 closed
65432 open
Out put
A1 A2 A3 O2
X Y 123 Open
X Y 999 closed
Very much appreciate your help. Thanks
I think you're trying to describe a join:
source=Apple.csv | join A3 [source=Orange.csv | rename O1 as A3] | table A1 A2 A3 O2
Usually joining isn't the Splunk way. Depending on your actual use case there may be much better ways.
I think you're trying to describe a join:
source=Apple.csv | join A3 [source=Orange.csv | rename O1 as A3] | table A1 A2 A3 O2
Usually joining isn't the Splunk way. Depending on your actual use case there may be much better ways.