Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

what needs to be added to modify my search to display only the windows hosts?

$
0
0
The following is my search query :- index=* | regex _raw!=".*2016-\d{2}-\d{2}.*" | stats values(host) as hosts Also is there any way that I can see all the sources per host in which my search string satisfies?

Viewing all articles
Browse latest Browse all 47296

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>