Dear Experts ,
Please suggest an answer on a silly question
If my log contains *(star) as a word/character .
How we will be able to do it in Splunk .
As in Splunk * is considered as regex .
Is it possible.
Regards,
Abhay
According to the documentation the "where" or "regex" command should be used: https://docs.splunk.com/Documentation/Splunk/latest/Search/Wildcards#Searching_for_the_asterisk_char...
You can do like this
your base search | regex _raw=".*\*.*"
or | search match(_raw,"[*]")
The match function is not available with | search
command. Do you mean | where match(_raw,"[*]")
(which works)?