Hello Splunkers, Is it possible to group events based on a sequence. Event 1 - request , request_id 123 Event 2 - response , 200 Event 3 - request , request_id 456 Event 4 - response , 400 For each request I want first occured response to be group together Group 1- (Event 1 - request , request_id 123 Event 2 - response , 200) Group 2- ( Event 3 - request , request_id 456 Event 4 - response , 400) Note:- request_id is not logged in response. My actual expectation here is to get the response for each request id .
... View more