Splunk Search

field value is field name Defined

jcisha
Path Finder

Defined as the value of the field of the field name is possible?

ex) A_Field item is values "B_Field"
   conversion : B_Field = *

I'm looking into "command.conf" how using
i will not know. So the question is.

0 Karma

lguinn2
Legend

You might be able to do this with a macro, but I don't know how you would do it with a regular search.

More details would be helpful.

jcisha
Path Finder

Thank you! Let's test the macro function.
Answer If you have any other suggestions please.

0 Karma

jcisha
Path Finder

Field001 = "TEMP_FIELD", Field002 = "1000"  =>  TEMP_FIELD = 1000

Would like to change the format, such as the view.

0 Karma

stefandagerman
Path Finder

I think you need to try to restate your question. It may be just me, but I really don't understand what you are trying to do.

Get Updates on the Splunk Community!

Announcing Scheduled Export GA for Dashboard Studio

We're excited to announce the general availability of Scheduled Export for Dashboard Studio. Starting in ...

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics GA in US-AWS!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...