Splunk Search

field value is field name Defined

jcisha
Path Finder

Defined as the value of the field of the field name is possible?

ex) A_Field item is values "B_Field"
   conversion : B_Field = *

I'm looking into "command.conf" how using
i will not know. So the question is.

0 Karma

lguinn2
Legend

You might be able to do this with a macro, but I don't know how you would do it with a regular search.

More details would be helpful.

jcisha
Path Finder

Thank you! Let's test the macro function.
Answer If you have any other suggestions please.

0 Karma

jcisha
Path Finder

Field001 = "TEMP_FIELD", Field002 = "1000"  =>  TEMP_FIELD = 1000

Would like to change the format, such as the view.

0 Karma

stefandagerman
Path Finder

I think you need to try to restate your question. It may be just me, but I really don't understand what you are trying to do.

Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...