Splunk Tutorial | Subsearch Using Results from Two Indexes #FADS

preview_player
Показать описание
Playlist Link for All Daily Trainings

Log Analysis Made Easy (L.A.M.E.) Free Analytic Daily Share (F.A.D.S) will help you navigate Splunk better, use data models, or search for something from popular Splunk logs. Please feel free to comment below for analytics that you may be interested in seeing.

You can make subsearches from the results of another splunk query - not just csvs following this tutorial.

To view all videos in the playlist on Splunk Tutorials for Creating Searches use the link:
Рекомендации по теме
Комментарии
Автор

subsearches have limititations (ours is 60 seconds and then it stops the search) how do i handle that? can you make a video?

innadubinsky
join shbcf.ru