union command overview
Merges the results from two or more datasets into one larger dataset. One of the datasets can be the incoming search results that are then piped into the
union command and merged with a second dataset.
If all of the datasets that you want to merge are indexes, you can use the indexes dataset function instead of the
union command. See
indexes dataset function.
The required syntax is in bold.
- <dataset> ["," <dataset>...]
timewrap command examples
union command syntax details
This documentation applies to the following versions of Splunk® Cloud Services: current