Hi @FinnHatlen If the other two values are added to some other field, you could write an eval and use coalesce function to include it in message_text. https://docs.splunk.com/Documentation/Splunk/8.0.6/SearchReference/ConditionalFunctions#coalesce.28X.2C....29
... View more
I'm new to Splunk and would like to know if it's possible to retrieve and monitor hardware status. When I search the data I have I can find logs when a threshold has been passed, like "temperature high".
Is it possible to monitor temperature continuously, or CPU usage, memory, disk, etc.?
... View more