Splunk Search

Splunk Query

pratapa
Explorer

The Splunk report below returns ‘shipping points’ (warehouse codes). Using the lookup table (also below), our job is to sent relevant Splunk results for a shipping point, to the appropriate warehouse group defined in the lookup table.

SPLUNK QUERY

index=webmethods_nonprd CESAP.pub.Shipment.handler:processShipment_PostalMailProvider OR CEAustraliaPost.sub.Shipment.handler | transaction shipment | search NOT (linecount="3" AND "Published shipment document" AND "Successfully created Australia Post shipment order" "Generated Australia Post shipment order summary and archived it in the SAP content repository") | fields shipment, point, delivery

LOOKUP TABLE

Shipping Point (Warehouse Code) Alert Email of Warehouse Group

2000 distenqdesk@xyz.com

3000 distenqdeskvic@xyz.com

4000 distenqdesksouthqld@xyz.com

6000 distenqdeskwa@xyz.com

7020 distenqdesktas@xyz.com

8000 distenqdeskNT@xyz.com

The Splunk report below returns ‘shipping points’ (warehouse codes). Using the lookup table (also below), our job is to sent relevant Splunk results for a shipping point, to the appropriate warehouse group defined in the lookup table.

Could you please advise the ‘right’ way to do this? (e.g., using Splunk lookup table functionality).

0 Karma
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Dynamic formatting from XML events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...