Splunk Search

How flexible use search if statement?How flexible use search if statement?

lacusmax
New Member

To produce a single value dashboard, the utilization of the CPU and the MEN , and when any value exceeding the target lamp display different index value , and how to use the if statement . Whether you can use java nested stitching

Tags (1)
0 Karma

yannK
Splunk Employee
Splunk Employee

I do not compute your question, is it related to the Splunk search language ?

Do you have any sample, search examples ?

Maybe are you thinking of the search commands like

mysearch | WHERE field>value

or

mysearch | eval field=if(condition,"valueA","valueB")

or

mysearch | eval field=case(conditionA,"valueA", conditionB,"valueB",1=1,"valuedefault")

0 Karma

Ayn
Legend

What? What is the question?

0 Karma
Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...