Splunk Search

Data Model Lookup Attribute doesn't list all tables

kmattern
Builder

Splunk 6.0

The title says it all. I want to add a specific lookup table attribute but the table is not in the dropdown list. In fact the dropdown appears to list about 85 tables accurately and in order and then another ten or so at random.

All of my lookup tables are visible in Settings and all are global. I use this specific table on a daily basis, so I know that it there and can be seen.

Is there a conf setting somewhere to increase the number of tables shown in the dropdown for the lookup attributee?

0 Karma

kmattern
Builder

I guess that in order to see the table it has to be included in the Lookup Definitions. As soon as I did that I could see the table.

0 Karma

troylanders
New Member

I have found that it has to be in the lookup definitions AND it has to be global.

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Calling All Security Pros: Ready to Race Through Boston?

Hey Splunkers, .conf25 is heading to Boston and we’re kicking things off with something bold, competitive, and ...

Beyond Detection: How Splunk and Cisco Integrated Security Platforms Transform ...

Financial services organizations face an impossible equation: maintain 99.9% uptime for mission-critical ...

Customer success is front and center at .conf25

Hi Splunkers, If you are not able to be at .conf25 in person, you can still learn about all the latest news ...