I'm building dynamic computer groups with Log Analytics (Kusto). I need to join two tables where Computer case sensitivity does not match. Has anyone figured out a workaround for this scenario?
Example (using one computer):
Heartbeat table has Computer with Name ABCDE.domain.com Application_CL table has Computer with Name abcde.DOMAIN.com
If I run this query, the result set is empty, unless the FQDN's are an exact match. If this were SQL, it would return ABCDE.domain.com, which is what we need.
let H = Heartbeat | summarize by Computer; let A = Application_CL | where Name_s == "AppName" | summarize by Computer; H | join A on $left.Computer == $right.Computer | distinct Computer
I tried using =~ as the join operator, but it must be ==. toupper() and tolower() do me no good in this scenario.
Thanks in advance