Splunk Search

Comparing lists from day1 with the list of day2 and etc. to get difference

igschloessl
Explorer

I need to compare a list consisting of one field from day1 to day2 and get what values where not listed on day 1 but in day2
Comparing this with day 3 and so on.

so for example I have a list with user agents and I want to detect what user agents I have today comparing to the last days. Or comparing one week with another week.

Can I do this automated?

Thank you in advance

0 Karma
Get Updates on the Splunk Community!

Automatic Discovery Part 1: What is Automatic Discovery in Splunk Observability Cloud ...

If you’ve ever deployed a new database cluster, spun up a caching layer, or added a load balancer, you know it ...

Real-Time Fraud Detection: How Splunk Dashboards Protect Financial Institutions

Financial fraud isn't slowing down. If anything, it's getting more sophisticated. Account takeovers, credit ...

Splunk + ThousandEyes: Correlate frontend, app, and network data to troubleshoot ...

 Are you tired of troubleshooting delays caused by siloed frontend, application, and network data? We've got a ...