<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: report on dashboard showing extra fields in Dashboards &amp; Visualizations</title>
    <link>https://community.splunk.com/t5/Dashboards-Visualizations/Why-does-report-on-dashboard-show-extra-fields/m-p/624146#M51170</link>
    <description>&lt;P&gt;Ok - took a few tries but I got it to work with the field command.&amp;nbsp; Thanks.&lt;/P&gt;</description>
    <pubDate>Tue, 13 Dec 2022 14:53:32 GMT</pubDate>
    <dc:creator>kmhanson</dc:creator>
    <dc:date>2022-12-13T14:53:32Z</dc:date>
    <item>
      <title>Why does report on dashboard show extra fields?</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Why-does-report-on-dashboard-show-extra-fields/m-p/624137#M51168</link>
      <description>&lt;P&gt;I am new to splunk. Creating a report to count the successful and error logins to my system. The report shows the two columns but when I put the report on my dashboard, it adds two columns, span and span_days. I can't figure out how to remove those two extra columns. Any advice?&lt;/P&gt;</description>
      <pubDate>Tue, 13 Dec 2022 15:17:13 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Why-does-report-on-dashboard-show-extra-fields/m-p/624137#M51168</guid>
      <dc:creator>kmhanson</dc:creator>
      <dc:date>2022-12-13T15:17:13Z</dc:date>
    </item>
    <item>
      <title>Re: report on dashboard showing extra fields</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Why-does-report-on-dashboard-show-extra-fields/m-p/624143#M51169</link>
      <description>&lt;P&gt;Use the &lt;FONT face="courier new,courier"&gt;fields&lt;/FONT&gt; command to specify the fields you want to display or those you want to remove.&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;| fields foo bar&lt;/LI-CODE&gt;&lt;LI-CODE lang="markup"&gt;| fields - span span_days&lt;/LI-CODE&gt;</description>
      <pubDate>Tue, 13 Dec 2022 14:35:17 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Why-does-report-on-dashboard-show-extra-fields/m-p/624143#M51169</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2022-12-13T14:35:17Z</dc:date>
    </item>
    <item>
      <title>Re: report on dashboard showing extra fields</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Why-does-report-on-dashboard-show-extra-fields/m-p/624146#M51170</link>
      <description>&lt;P&gt;Ok - took a few tries but I got it to work with the field command.&amp;nbsp; Thanks.&lt;/P&gt;</description>
      <pubDate>Tue, 13 Dec 2022 14:53:32 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Why-does-report-on-dashboard-show-extra-fields/m-p/624146#M51170</guid>
      <dc:creator>kmhanson</dc:creator>
      <dc:date>2022-12-13T14:53:32Z</dc:date>
    </item>
  </channel>
</rss>

