Splunk Search

Merge two rows in one

nebel
Communicator

Hi,

is it possible to merge two or more event results in one? The events are from the same field.

Reason : I have a dashboard which can just show one result and it doens't recognize the other fields, just one. So I thought I merge all events in one line in a row.

How can I do this?

Thx

Tags (3)
0 Karma
1 Solution

Damien_Dallimor
Ultra Champion

Does the mvcombine command do what you want ?

View solution in original post

0 Karma

Damien_Dallimor
Ultra Champion

Does the mvcombine command do what you want ?

0 Karma

jt_splunk
Explorer
0 Karma
Get Updates on the Splunk Community!

Detecting Remote Code Executions With the Splunk Threat Research Team

WATCH NOWRemote code execution (RCE) vulnerabilities pose a significant risk to organizations. If exploited, ...

Enter the Splunk Community Dashboard Challenge for Your Chance to Win!

The Splunk Community Dashboard Challenge is underway! This is your chance to showcase your skills in creating ...

.conf24 | Session Scheduler is Live!!

.conf24 is happening June 11 - 14 in Las Vegas, and we are thrilled to announce that the conference catalog ...