Category "sumologic"

Sumologic: How to get average time difference between two messages

Having a set of logs like: Log10:[requestId=2][taskId=C][message='End'] Log9: [requestId=2][taskId=C][message='Start'] Log8: [requestId=2][taskId=B][message='En

Search query in Sumologic - Contains

I'm a bit lost with a search query in Sumologic. I need to get logs where _sourceHost contains production In case of SQL it looked like this WHERE app="my-app