Splunk Search

Prefix search no results

gmasca
Explorer

Hi,
I am making a query where it get some raw syslog data and format into columns with some filters. When I search directly it present the correct results. When I add a prefix search or try a multisearch it doesn't find anything. Anybody got an idea what can cause that?

Your help is much appreciated,

Thank you

Tags (2)
0 Karma

gmasca
Explorer

Missing pipe before multisearch.

0 Karma

kamlesh_vaghela
SplunkTrust
SplunkTrust

@gmasca

Can you please share some more information like sample event, search and screens if possible??

0 Karma

gmasca
Explorer

Apologies it was a bad mistake of not adding the pipe in the beginning. 😞

0 Karma

egt
New Member

No Idea but i searching a solution for the same Problem.

0 Karma
Get Updates on the Splunk Community!

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

Splunk Decoded: Business Transactions vs Business IQ

It’s the morning of Black Friday, and your e-commerce site is handling 10x normal traffic. Orders are flowing, ...

Fastest way to demo Observability

I’ve been having a lot of fun learning about Kubernetes and Observability. I set myself an interesting ...