Splunk Search

matching logs

somu2014
New Member

we have two log files one is ids logs and another is waf

we want to check for source address which are common in both ids and waf once we get that list that list of sources which are common in ids and waf we need the list of signature for those sources from both ids and waf

expected output:: src adress is comman in both ids and waf

srcaddress sig of ids sig of waf

Tags (2)
0 Karma

aweitzman
Motivator

See my answer here:

http://answers.splunk.com/answers/140199/question-regarding-correlating-two-different-device-logs?pa...

(In general, try not to post the same question in two different threads.)

Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...