Favorite tweets

It’s like a mini revival happening at the @ArkEncounter & @CreationMuseum. Over 1400 have committed their lives to the Lord Jesus Christ during the first half of our 40 days & nights (40/40) of music at the world’s largest Christian music festival. These photos feature one of… https://t.co/uwcuVWL4ub https://t.co/vz7uhwcwTC — Ken Ham (@aigkenham) Aug 28, …
Continue reading Favorite tweets

#waffle584 3/5 🟩🟩🟩🟩🟩 🟩⭐🟩⬜🟩 🟩🟩⭐🟩🟩 🟩⬜🟩⭐🟩 🟩🟩🟩🟩🟩 πŸ”₯ streak: 2 https://t.co/4doM5G9lQM

#waffle584 3/5 🟩🟩🟩🟩🟩 🟩⭐🟩⬜🟩 🟩🟩⭐🟩🟩 🟩⬜🟩⭐🟩 🟩🟩🟩🟩🟩 πŸ”₯ streak: 2 https://t.co/4doM5G9lQM — Warren Myers 🐧🐿 (@warrenmyers) Aug 28, 2023 from Twitter https://twitter.com/warrenmyers August 27, 2023 at 08:52PM via IFTTT

#deluxewaffle66 0/5 🟩🟩🟩🟩🟩🟩🟩 🟩⬜🟩⬜🟩⬜🟩 🟩🟩🟩🟩🟩🟩🟩 🟩⬜🟩⬜🟩⬜🟩 🟩🟩🟩🟩🟩🟩🟩 🟩⬜🟩⬜🟩⬜🟩 🟩🟩🟩🟩🟩🟩🟩 https://t.co/4doM5G9lQM

#deluxewaffle66 0/5 🟩🟩🟩🟩🟩🟩🟩 🟩⬜🟩⬜🟩⬜🟩 🟩🟩🟩🟩🟩🟩🟩 🟩⬜🟩⬜🟩⬜🟩 🟩🟩🟩🟩🟩🟩🟩 🟩⬜🟩⬜🟩⬜🟩 🟩🟩🟩🟩🟩🟩🟩 https://t.co/4doM5G9lQM — Warren Myers 🐧🐿 (@warrenmyers) Aug 28, 2023 from Twitter https://twitter.com/warrenmyers August 27, 2023 at 08:51PM via IFTTT

#waffle583 3/5 🟩🟩🟩🟩🟩 🟩⭐🟩⬜🟩 🟩🟩⭐🟩🟩 🟩⬜🟩⭐🟩 🟩🟩🟩🟩🟩 πŸ”₯ streak: 1 https://t.co/4doM5G9lQM

#waffle583 3/5 🟩🟩🟩🟩🟩 🟩⭐🟩⬜🟩 🟩🟩⭐🟩🟩 🟩⬜🟩⭐🟩 🟩🟩🟩🟩🟩 πŸ”₯ streak: 1 https://t.co/4doM5G9lQM — Warren Myers 🐧🐿 (@warrenmyers) Aug 27, 2023 from Twitter https://twitter.com/warrenmyers August 26, 2023 at 08:06PM via IFTTT

Favorite tweets

Well, picked up the RV today after about a month in the heat, and, to the disappointment of some, but to my great pleasure, the background is still in place! So, no dystopian DL next week, sorry! https://t.co/aIGNeY4rvJ — π”šπ”₯π”¦π”±π”’π”…π”’π”žπ”―π”‘ (@HwsEleutheroi) Aug 26, 2023 from http://twitter.com/HwsEleutheroi via IFTTT

Answer by warren for splunk map pass multiple values

You might try something like this (presuming you have a common field like hostname in each event): index=ndx sourcetype=srctp ("a.string" OR "another.string") | rex field=_raw "some text that exists in events with a.string (?<xx>\S+) (?<yy>\s+)" | rex field=_raw "other text found with another.string (?<zz>\S+)" | fields xx yy zz hostname | stats values(*) as * …
Continue reading Answer by warren for splunk map pass multiple values