Splunk_Advanced_Commands_with_Examples
Splunk_Advanced_Commands_with_Examples
search
fields
table
stats
Aggregate results.
eval
where
sort
Order results.
dedup
Remove duplicates.
top
rare
rex
lookup
join
transaction
head / tail
Limit results.
eventstats
streamstats
Running totals/averages.
coalesce
isnull
outputnew