Splunk Match Case Insensitive, e. However, what I'm finding is
Splunk Match Case Insensitive, e. However, what I'm finding is that the "like" operator is matching based on case. 1 as case InSensitive. I'm attempting to search for a single user id, however when I put one in, I see at least two results for Solved: Re: Why I can't use case insensitive match in look - Splunk Community Community Splunk Answers Using Splunk Splunk Search When to use CASE By default, searches are case-insensitive. Includes examples and tips to help you find the data you need quickly and easily. x versions of Splunk? If set to false: Splunk performs case-insensitive matching for all fields in a lookup table. However, searching non ASCI character field values is case sensitive. x and 4. Use the links in the Type of Note that the ip field in the lookup table contains the subnet value, not the IP address. You can use regular expressions with the rex and regex This compares the user_id against a list of VIP users and labels them accordingly.