Splunk Search

eval of environment variables

poete
Builder

I am trying to get the content of dashboard panel translaed according to the env:locale value. In order to do this, I have a lookup table gathering, for each numeric value, the translation, French and Eglish for instance. I try to use the value of env:locale as a key to the lookup, but it doesnot seem to work at all. Is there a limitation here?

0 Karma
1 Solution

poete
Builder

So I found the answer to my question ... in the documentation of course!
http://docs.splunk.com/Documentation/Splunk/7.1.1/Viz/tokens, section token filters.

What was missing is the usage of the |s to wrap values in quotes

View solution in original post

0 Karma

poete
Builder

So I found the answer to my question ... in the documentation of course!
http://docs.splunk.com/Documentation/Splunk/7.1.1/Viz/tokens, section token filters.

What was missing is the usage of the |s to wrap values in quotes

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

A Four-Part Event Series: Full Stack Observability For the AI Era

As AI reshapes applications, infrastructure, and the way teams operate, the traditional boundaries of ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...