What are the expected search results from executing the following SPL command?
index=network NOT StatusCode=200
How is a Search Workflow Action configured to run at the same time range as the original search?
Which method in the Field Extractor would extract the port number from the following event? |
10/20/2022 - 125.24.20.1 ++++ port 54 - user: admin
Which of the following eval command functions is valid?