I am trying to generate report using the following command but it is not showing any result . i just want to make sure is everything right in the code or not . As i was learning splunk from pluralsight.
source="airbnb.csv" index="airbnb" "Review Scores Rating"<70 neighbourhood_group="*" | top limit=5 neighbourhood_group
Debug SPL by starting with the smallest part of the query and adding bits until it breaks. The last thing added most likely is the problem. In your example, start with index="airbnb"
then try source="airbnb.csv" index="airbnb"
and so on until you get no results. On the surface, your code looks fine, but we don't know your data so we don't know if you have an incorrect field name, for example.