<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Tags - Auto tagging from a csv in Knowledge Management</title>
    <link>https://community.splunk.com/t5/Knowledge-Management/Tags-Auto-tagging-from-a-csv/m-p/281145#M2473</link>
    <description>&lt;P&gt;No trivial way to auto-tag that I can think of. I think an alternate approach would be to use lookups to associate other fields with those events.&lt;/P&gt;

&lt;P&gt;Although, if you have a criteria for determining a tag association within a csv, then you can use that same info to define eventtypes and therefore tags...&lt;/P&gt;

&lt;P&gt;Feel free to post a scrubbed example and we get make this question more tangible.&lt;/P&gt;</description>
    <pubDate>Thu, 27 Oct 2016 20:38:29 GMT</pubDate>
    <dc:creator>sloshburch</dc:creator>
    <dc:date>2016-10-27T20:38:29Z</dc:date>
    <item>
      <title>Tags - Auto tagging from a csv</title>
      <link>https://community.splunk.com/t5/Knowledge-Management/Tags-Auto-tagging-from-a-csv/m-p/281144#M2472</link>
      <description>&lt;P&gt;Looking to see if this is possible or if there are any other alternatives.&lt;/P&gt;

&lt;P&gt;Goal:  I am using &lt;STRONG&gt;tags as a search filter&lt;/STRONG&gt; for role access and I am looking for an &lt;STRONG&gt;automated way to manage&lt;/STRONG&gt; this.  Servers may be decommissioned or new servers may pop up so I want to automate as much as possible.  An example would be providing an application owners access to ONLY OS logs, web server logs, etc to their application only.   &lt;/P&gt;

&lt;P&gt;Background:  We have indexes for windows logs, unix logs, web server logs, etc, so we cannot have separate indexes for applications.  We have an automated job to produce a csv from our CMDB that tells us what application is mapped to which server, so how can we use that to auto-tag?&lt;/P&gt;</description>
      <pubDate>Wed, 26 Oct 2016 13:07:33 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Knowledge-Management/Tags-Auto-tagging-from-a-csv/m-p/281144#M2472</guid>
      <dc:creator>jnguyen413</dc:creator>
      <dc:date>2016-10-26T13:07:33Z</dc:date>
    </item>
    <item>
      <title>Re: Tags - Auto tagging from a csv</title>
      <link>https://community.splunk.com/t5/Knowledge-Management/Tags-Auto-tagging-from-a-csv/m-p/281145#M2473</link>
      <description>&lt;P&gt;No trivial way to auto-tag that I can think of. I think an alternate approach would be to use lookups to associate other fields with those events.&lt;/P&gt;

&lt;P&gt;Although, if you have a criteria for determining a tag association within a csv, then you can use that same info to define eventtypes and therefore tags...&lt;/P&gt;

&lt;P&gt;Feel free to post a scrubbed example and we get make this question more tangible.&lt;/P&gt;</description>
      <pubDate>Thu, 27 Oct 2016 20:38:29 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Knowledge-Management/Tags-Auto-tagging-from-a-csv/m-p/281145#M2473</guid>
      <dc:creator>sloshburch</dc:creator>
      <dc:date>2016-10-27T20:38:29Z</dc:date>
    </item>
    <item>
      <title>Re: Tags - Auto tagging from a csv</title>
      <link>https://community.splunk.com/t5/Knowledge-Management/Tags-Auto-tagging-from-a-csv/m-p/281146#M2474</link>
      <description>&lt;P&gt;I would recommend to use either automatic lookups or define an event types with proper tags to have an "automatic tagging"&lt;/P&gt;</description>
      <pubDate>Thu, 13 Jul 2017 22:38:07 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Knowledge-Management/Tags-Auto-tagging-from-a-csv/m-p/281146#M2474</guid>
      <dc:creator>HighJustice</dc:creator>
      <dc:date>2017-07-13T22:38:07Z</dc:date>
    </item>
  </channel>
</rss>

