Let me start by saying I know we should be using the coalesce command. I didn't write this query, it has been running fine for a year and it broke after we upgraded to 8.0.5.1. So just making sure I'm not crazy. Sample CSV Host_File_1.csv abc.com,1.1.1.1 Host_File_2.csv xyz.com,2.2.2.2 Splunk 7.2.5.1.. | inputlookup Host_File_1.csv | inputlookup Host_File_2.csv append=true | rename host_file_1_name as hostname | rename host_file_2_name as hostname | table hostname, ip Output Hostname IP abc.com 1.1.1.1 xyz.com 2.2.2.2 Splunk 8.0.5.1 | inputlookup Host_File_1.csv | inputlookup Host_File_2.csv append=true | rename host_file_1_name as hostname | rename host_file_2_name as hostname | table hostname, ip Output Hostname IP xyz.com 2.2.2.2 abc.com in this case gets overwritten by xyz.com it seems. Anyone know why this is happening?
... View more