Splunk Search

how to compare a field value with all the values in a other column

Rajkumarkbm2
Explorer

Code1 | Descr | Code2 | Descr2 |Level
123 | ABCD | 987 | ZYX1 | level1
456 | EFGH | 678 | ZZZ2 | level1
789 | ACBV | 999 | YYY 3 | level1
987 | ZYX1 | 000 | A123 | level2
987 | ZYX1 | 111 | B123 | level2
678 | ZZZ2 | 222 | J123 | level2
678 | ZZZ2 | 333 | K123 | level2
333 | K123 |011 | K222 | level3

I want to compare Row#1 Code2 is present in Code1. I want to group the values with level 1 to level 3.

Tags (1)
0 Karma

kozanic_FF
Path Finder

Are you able to mock up what you would like your results to look like?

Not really sure what your goal is based on what you have provided so far

0 Karma
Get Updates on the Splunk Community!

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...

Splunk MCP & Agentic AI: Machine Data Without Limits

Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization uses ...