Skip to content

Tag: SPL

Splunk Metrics Indexes Series: Part 2: Creating Metrics Indexes

Creating Metrics Indexes

This topic is split into a nine-part series to improve readability – this second installment covers how to create a metrics index. Parts 1-3 of

Splunk Metrics Indexes Series: Part 1: Comparing Events & Metrics Indexes

Events vs Metrics Indexes

This topic is split into a nine-part series to improve readability – this is the first installment in the series. Parts 1-3 of this series

Splunk Search Command Of The Week: mvjoin

Using the mvjoin Command

Data that has multiple values in a single field can be difficult to view in a report. Using the mvjoin command from Splunk’s Search Processing

Splunk Search Command Of The Week: coalesce

Using the coalesce Command

Data fields that have similar information can have different field names. While the Splunk Common Information Model (CIM) exists to address this type of situation,