Splunk Search

Splunk 7 / Win2012r2: Retrieve Tag's Value, based on another Tag's Value & Time

htkwan
Path Finder

Hello,
I'm new to Splunk. Need some advice, I need to do as follows:
Pls. see attached, the sample.
Tag 1 = ProductionState: 0 (for 30 sec), 1 (for 90 secs), then repeat. An event is generated every 1 sec (i.e. TagAlias=ProductionState, Value=<0 or 1>)

Tag 2: WireTensionLeft: 0 (for 1 sec), 10 (for 1 sec), …, 100 (for 1 sec), then repeat. An event is generated every 1 sec (i.e. TagAlias=WireTensionLeft, Value=<0,10, ..., 100, 0,...>)

Requirement
1.Retrieve Tag1 – Value at 10 sec, 20 sec, & 75 sec, when Tag2 – Value = 1

Pls. advise. Thanks

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Introducing Splunk 10.0: Smarter, Faster, and More Powerful Than Ever

Now On Demand Whether you're managing complex deployments or looking to future-proof your data ...

Community Content Calendar, September edition

Welcome to another insightful post from our Community Content Calendar! We're thrilled to continue bringing ...

Splunkbase Unveils New App Listing Management Public Preview

Splunkbase Unveils New App Listing Management Public PreviewWe're thrilled to announce the public preview of ...