I have a list of IPs and want to check if they are sending data to Splunk but using a single query.
The devices in this list need troubleshooting.
Is there some query I could run referencing this list to get an output of stats or something similar?
Any guidance, please?
Store you ips in a lookup and extend your search to filter using the stored ips
<your search> [| inputlookup iplist.csv | fields ip | format]