Hi, I am a new Splunk user and this is my first post on the community forum. If I am not following guidelines please let me know. I am getting an error for the last line of my search, what is the issue?
index=web | eval hash=md5(file) | stats count by file, hash | sort - count | eval bad_hash=case((hash==7bd51c850d0aa1df0a4ad7073aeaadf7), "malicious_file")
... View more