Community
Splunk Answers
Splunk Administration
Deployment Architecture
Getting Data In
Installation
Security
Knowledge Management
Monitoring Splunk
Using Splunk
Splunk Search
Dashboards & Visualizations
Splunk Dev
Alerting
Reporting
Other Usage
Splunk Platform Products
Splunk Enterprise
Splunk Cloud Platform
Splunk Data Stream Processor
Splunk Data Fabric Search
Splunk Premium Solutions
News & Education
Blog & Announcements
Community Blog
Product News & Announcements
Practitioner Resources
Adoption Boards
Community Office Hours
Splunk Tech Talks
Training & Certification
Training + Certification Discussions
Training & Certification Blog
Community Lounge
Getting Started
Welcome
Feedback
SplunkTrust
User Groups
Splunk Love
2024 Splunk Community Dashboard Challenge
Dashboard Challenge
Dashboard Challenge Terms and Conditions
Super User Program
Apps and Add-ons
All Apps and Add-ons
User Groups
Resources
SplunkBase
Developers
Documentation
Splunk Ideas
Sign In
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for
Search instead for
Did you mean:
All community
Knowledge base
abbasimani
Users
Products
cancel
Turn on suggestions
Auto-suggest helps you quickly narrow down your search results by suggesting possible matches as you type.
Showing results for
Search instead for
Did you mean:
Ask a Question
About abbasimani
abbasimani
New Member
Member since:
11-16-2022
11-17-2022
Community Statistics
Posts
1
Solutions
0
Karma Given
0
Karma Received
0
Member Since
11-16-2022
View all badges
Activity Feed
Posted
Re: How to use "where" and "not in" and "like" in one query
on
Splunk Search
.
11-16-2022
09:47 PM
Tagged
Re: How to use "where" and "not in" and "like" in one query
on
Splunk Search
.
11-16-2022
09:47 PM
Topics I've Started
No posts to display.
View All
Latest Contributions by abbasimani
Topics abbasimani has Participated In
Latest Contributions by abbasimani
Re: How to use "where" and "not in" and "like" in ...
by
abbasimani
in
Splunk Search
11-16-2022
09:47 PM
11-16-2022
09:47 PM
You can also use: NOT (host IN (*castle*,*local*)) So full query will be something like this: sourcetype="docker" AppDomain=Eos Level=INFO Message="Eos request calculated" NOT (host IN (*castle*,*local*))
... View more
Tags:
You
Contact Me
Online Status
Offline
Date Last Visited
11-17-2022
01:12 AM