I've created a dropdown input field that shows the user accounts that are locked out
And this is the search string that i'm using for my dashboard panel to display the user accounts that are locked out
When I select each of the user accounts listed below, the dashboard panel doesn't show them. How do I fix this?
I think "match" is here the problem. Because the QuickRef Guide says:
splunk-quick-reference-guide.pdf
match(X,Y) Returns if X matches the regex pattern Y. match(field, "^\d{1,3}\.\d$")
Did you tried:
|search Targed_Account_Name IN ($locked_out$)
or
|search Targed_Account_Name=$locked_out$