Splunk Search

Merge tables by aligning fields with same value

Thuan
Explorer

Hello,

I have two tables listed below. The small table is a subset of the large table.

Large_table Small_table

large_source_field small_source_field
Account_Domain registry_key_name
Account_Name registry_path

AddressFamily registry_type
registry_key_name

registry_path

registry_type

I like to merge the two tables into a single one (see below) with entries with the same value on the same row

After_merging_table

large_source_field small_source_field
Account_Domain

Account_Name

AddressFamily

registry_key_name registry_key_name
registry_path registry_path
registry_type registry_type

Any help will be much appreciated

Tags (2)
0 Karma
*NEW* Splunk Love Promo!
Snag a $25 Visa Gift Card for Giving Your Review!

It's another Splunk Love Special! For a limited time, you can review one of our select Splunk products through Gartner Peer Insights and receive a $25 Visa gift card!

Review:





Or Learn More in Our Blog >>