Hi All, I have one dashboard in that I am fetching the results from a input look up file.
I am getting the results but result are getting combined (multiple field values into single event)
But I want them separately like how we have updated in our look up file
In the same way I want to see in splunk.
Lookup file data:
Storage_name type. Quality
Abcd. Fty. 100
Efgd. Iju. 2000
Ghyu. Thu. 3455
Gfhbv. Uyhgt. 4556
Any suggestions
Can you show your existing SPL
Hi, i came to know the issue, i was doing a wrong query.
Now the issue resolved.
Thanks in advance