Splunk Search

How to add result of search to all rows in lookup?

shreyasathavale
Communicator

I have a search from where i get a result
i

ndex=abc sourcetype=file|table Name --- Result XYZ

Now my lookup is

Tables
ABC
LMN

I want to append column name with lookup , expected result

Tables Name
ABC      XYZ
LMN     XYZ
0 Karma
1 Solution

shreyasathavale
Communicator

Never mind, i found the solution using "filldown"

View solution in original post

0 Karma

shreyasathavale
Communicator

Never mind, i found the solution using "filldown"

0 Karma

shreyasathavale
Communicator

Never mind, i found the solution using "filldown"

0 Karma
Get Updates on the Splunk Community!

Detecting Remote Code Executions With the Splunk Threat Research Team

WATCH NOWRemote code execution (RCE) vulnerabilities pose a significant risk to organizations. If exploited, ...

Enter the Splunk Community Dashboard Challenge for Your Chance to Win!

The Splunk Community Dashboard Challenge is underway! This is your chance to showcase your skills in creating ...

.conf24 | Session Scheduler is Live!!

.conf24 is happening June 11 - 14 in Las Vegas, and we are thrilled to announce that the conference catalog ...