<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Filter fields in exporting logs into csv in Web GUI in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/How-to-filter-fields-in-exporting-logs-into-csv-in-Web-GUI/m-p/638998#M109114</link>
    <description>&lt;P&gt;Just utilize table command. e.g.:&lt;/P&gt;&lt;P&gt;index=* earliest=timestamp latest=timestamp|table _raw, _time, host&lt;/P&gt;</description>
    <pubDate>Thu, 06 Apr 2023 11:22:47 GMT</pubDate>
    <dc:creator>kristen</dc:creator>
    <dc:date>2023-04-06T11:22:47Z</dc:date>
    <item>
      <title>How to filter fields in exporting logs into csv in Web GUI?</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-filter-fields-in-exporting-logs-into-csv-in-Web-GUI/m-p/638997#M109113</link>
      <description>&lt;P&gt;I am sampling the logs of the last 24 hours in GUI by&lt;BR /&gt;1. search queries: index=*&lt;/P&gt;
&lt;P&gt;2. On GUI timeframe options, select last24 hours&lt;/P&gt;
&lt;P&gt;3. Click search&lt;/P&gt;
&lt;P&gt;4. Search completed&lt;/P&gt;
&lt;P&gt;5. Export results to csv&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;In the csv obtained, it is seen that it parsed all of the fields in each event log into a new column, resulting too many columns in the csv. I would only like to export _raw, timestamp, host into the csv. Would there be any suggestion? Thank you.&lt;/P&gt;</description>
      <pubDate>Thu, 06 Apr 2023 17:22:43 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-filter-fields-in-exporting-logs-into-csv-in-Web-GUI/m-p/638997#M109113</guid>
      <dc:creator>kristen</dc:creator>
      <dc:date>2023-04-06T17:22:43Z</dc:date>
    </item>
    <item>
      <title>Re: Filter fields in exporting logs into csv in Web GUI</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/How-to-filter-fields-in-exporting-logs-into-csv-in-Web-GUI/m-p/638998#M109114</link>
      <description>&lt;P&gt;Just utilize table command. e.g.:&lt;/P&gt;&lt;P&gt;index=* earliest=timestamp latest=timestamp|table _raw, _time, host&lt;/P&gt;</description>
      <pubDate>Thu, 06 Apr 2023 11:22:47 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/How-to-filter-fields-in-exporting-logs-into-csv-in-Web-GUI/m-p/638998#M109114</guid>
      <dc:creator>kristen</dc:creator>
      <dc:date>2023-04-06T11:22:47Z</dc:date>
    </item>
  </channel>
</rss>

