Is there a way to only search * (asterisk)?

Dear Experts ,

Please suggest an answer on a silly question

If my log contains *(star) as a word/character .

How we will be able to do it in Splunk .
As in Splunk * is considered as regex .

Is it possible.


You can do like this

your base search | regex _raw=".*\*.*"
or | search match(_raw,"[*]")

The match function is not available with | search command. Do you mean | where match(_raw,"[*]") (which works)?

