Splunk Search

How to get only the latest values of a Parameter for each server?

abhi04
Communicator

I have multiple Parameters and their values lister for each server. I am using the beloq command at last:

chart limit=0 values(abc) over Parameter by Server_Name

No I want only latest Parameter value to be listed for each Parameter for every server. Lets say for parameter "A" we have two values b and c for Server 1 and one value d for Server2. So I want to list only value 'b' for server 1 and value 'd' for Server2 for Parameter "A". Like this for other Parameter as well.
Can someone help me on this?

Tags (1)
0 Karma

ansif
Motivator
0 Karma
Get Updates on the Splunk Community!

Fastest way to demo Observability

I’ve been having a lot of fun learning about Kubernetes and Observability. I set myself an interesting ...

September Community Champions: A Shoutout to Our Contributors!

As we close the books on another fantastic month, we want to take a moment to celebrate the people who are the ...

Splunk Decoded: Service Maps vs Service Analyzer Tree View vs Flow Maps

It’s Monday morning, and your phone is buzzing with alert escalations – your customer-facing portal is running ...