What is the difference between a normal search in Splunk and a search that incorporates the REST command?
One of them uses the rest
command and the other doesn't. There's no material difference.
Would the REST command pull more information than a regular search?
It shouldn't. Did you have a specific rest
command in mind?
No, nothing in particular just the standard | REST ... Okay, thank you kindly for your input.