Splunk Search

LookUp table show data who matches and who are not matches

abhi144
New Member

I have a csv file in which two field are ShopNo and ShopId. From search i'm getting ShopNo and ShopIdinDevice so i wanted a lookup table to show like-

ShopNo ShopIdinDevice Shopid

So i can compare for which ShopNo, ShopIdinDevice and ShopId is different. What should be search command for this?
Any suggestion will be appreciated.

Tags (2)
0 Karma

somesoni2
SplunkTrust
SplunkTrust

This could be as simple as below:-

your base search giving ShopNo,ShopIdinDevice | lookup youlookup.csv ShopNo OUTPUT ShopId 
0 Karma
Get Updates on the Splunk Community!

What's new in Splunk Cloud Platform 9.1.2312?

Hi Splunky people! We are excited to share the newest updates in Splunk Cloud Platform 9.1.2312! Analysts can ...

What’s New in Splunk Security Essentials 3.8.0?

Splunk Security Essentials (SSE) is an app that can amplify the power of your existing Splunk Cloud Platform, ...

Let’s Get You Certified – Vegas-Style at .conf24

Are you ready to level up your Splunk game? Then, let’s get you certified live at .conf24 – our annual user ...