I have Splunk pulling in data from a lookup and creating two multivalue fields. I want to combine these two into a third one based on the value index.
Example:
Field 1: A,B,C,D
Field 2: 1,2,3,4
I want the third field to look like this:
Field 3: A1, B2, C3, D4
The number of values in the fields are subject to change so is it possible to do this in an automated way as opposed to manually evaling it?
Check out the mvzip
function for eval
.
Check out the mvzip
function for eval
.