Splunk Search

How to highlight table cell based on two jobs runtime?


Hi Team,

I have multiple jobs runs daily . Showing the status of these jobs in table. Now, I want to highlight the cell depend on the jobs run time.
 For example there is three jobs .. Job Name A1 A2 A3 
and data for 3 days is like
date                    jobName              StartTime                                       Status
22-02-2022      A1                            22-02-2022 01:00:00         Success
22-02-2022      A2                            22-02-2022 04:00:00           Success
22-02-2022      A3                             22-02-2022  02:00:00          Success
23-02-2022      A1                            23-02-2022 00:50:00            Success
23-02-2022      A2                            23-03-2022 00:10:00           Success
23-02-2022      A3                             23-03-2033  03:00:00         Failed
24-02-2022      A1                            24-03-2022 00:20:00          Success
24-02-2022      A2                            24-03-2022 01:00:00          Success
24-02-2022      A3                             24-03-2033  00:00:00        Success

Now , I want  

  1. Job dependencies 01: If A2 runs before A1 then it should be highlighted with a different color., suppose red
  2. Job dependencies 02: If A3 runs before A1 then it should be highlighted with a different color., Yellow

    And at last table will look like

    Date A1 A2 A3
    22-02-2022 Success Success Success
    23-02-2022 Success Success Failed
    24-02-2022 Success Success Success

    Please help me to achieve this without using JS.
Labels (4)
0 Karma
Get Updates on the Splunk Community!

Improve Your Security Posture

Watch NowImprove Your Security PostureCustomers are at the center of everything we do at Splunk and security ...

Maximize the Value from Microsoft Defender with Splunk

 Watch NowJoin Splunk and Sens Consulting for this Security Edition Tech TalkWho should attend:  Security ...

This Week's Community Digest - Splunk Community Happenings [6.27.22]

Get the latest news and updates from the Splunk Community here! News From Splunk Answers ✍️ Splunk Answers is ...