Splunk Search

How to configure wildcard matching against lookups in Splunk Cloud?

gary_richardson
Path Finder

Hello

I need to give a lookup table search the ability to use wildcards against the values contained in the lookup file, as per this example here:

https://answers.splunk.com/answers/28566/how-to-use-wildcard-in-lookup-based-searches-and-alerts.htm...

However, I am using Splunk Cloud, and do not have shell access to edit the transforms.conf. I do not see any option in the Cloud GUI for adding these directives. I should point out that I want to use the accepted answer, not the undocumented answer of inclusion of * in the lookup file, which doesn't seem to work.

Thanks.

0 Karma

esix_splunk
Splunk Employee
Splunk Employee

There is a configuration that Cloud Operations needs to set for you. Please open a support ticket and request that your lookup be configured for wildcards, and attach the configuration to the ticket.

Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...