<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Creating Data How Please Help!! in Reporting</title>
    <link>https://community.splunk.com/t5/Reporting/Creating-Data-How-Please-Help/m-p/537434#M8725</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/230923"&gt;@simonafcbrown&lt;/a&gt;,&lt;BR /&gt;(relatively new member here as well so I might be wrong about some stuff and PLEASE anybody correct me if I write something wrong &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;)&lt;BR /&gt;From what I understand from your post you have already indexed your csv file through the "add Data" function of Splunk. &amp;nbsp;If not you have 2 options:&lt;BR /&gt;1.&lt;BR /&gt;Click the splunk logo(top left), click add Data and upload your csv as an input file.&lt;BR /&gt;During this process you can set an Index your Data will get sent into. (Default or custom Index)&lt;BR /&gt;To access this data in a search for your dashboard simply start your search with:&lt;BR /&gt;&lt;BR /&gt;index=yourIndexName&lt;BR /&gt;&lt;BR /&gt;searching with just this string will give you any indexed events in the selected time range!&lt;BR /&gt;Then you can follow up with your desired search.&lt;BR /&gt;&lt;BR /&gt;2.&lt;BR /&gt;You can also create a Lookup from your csv Data.&lt;BR /&gt;A &amp;nbsp;file with columns and rows can be loaded as a Lookup in Settings-&amp;gt;Lookup-&amp;gt;new file (Lookup table files)&lt;BR /&gt;Then also create a new Lookup Definition for your uploaded Lookup File.&lt;BR /&gt;You can access the created Lookup File in your search through:&lt;BR /&gt;&lt;BR /&gt;| inputlookup yourLookupName&lt;BR /&gt;&lt;BR /&gt;if all was done correctly you can search your source for data!&lt;BR /&gt;To add your search to a Dashboard just go to "Save as" in the top right of your search and create a Dashboard &amp;nbsp;from there. You can also add Searches to existing Dashboards here if you pick "Existing"&lt;BR /&gt;&lt;BR /&gt;I hope my explanation was helpful!&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;also for most of the questions you have, docs.splunk is your friend &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;BR /&gt;&lt;A href="https://docs.splunk.com/Documentation" target="_blank" rel="noopener"&gt;https://docs.splunk.com/Documentation&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 27 Jan 2021 15:44:58 GMT</pubDate>
    <dc:creator>FelixLeh</dc:creator>
    <dc:date>2021-01-27T15:44:58Z</dc:date>
    <item>
      <title>Creating Data How Please Help!!</title>
      <link>https://community.splunk.com/t5/Reporting/Creating-Data-How-Please-Help/m-p/537431#M8724</link>
      <description>&lt;P&gt;Hello can you help I am not the most technical and I have signed up to the UAT of Splunk.&lt;/P&gt;&lt;P&gt;Logged on as a Administrator and built a dashboard simply form a CSV file use in the Add Data Functionality path of creating a dashboard.&lt;/P&gt;&lt;P&gt;So I have a LIVE environment and when I go to add data this is not available, I see I have to add data using a Lookup functionality?&amp;nbsp; I only want to create a dashboard based on a CSV that is it.&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am little confused training one way and not having this functionality available to me in Live?&amp;nbsp;&lt;/P&gt;&lt;P&gt;I might be confused myself can you help. Do I need a lookup ?&amp;nbsp; Plus when I uploaded file I get this error via the Lookup method of the flat CSV file I want to use.&amp;nbsp; The File does not contain any invalid characters.&amp;nbsp;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I am little bit nervous about what I have to do and I am confused on how this system&lt;/P&gt;&lt;P&gt;Please Please can you help...&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;Encountered the following error while trying to save: Invalid name: only alphanumeric characters, '-', '_', and '.' are allowed.&lt;/STRONG&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 27 Jan 2021 14:52:15 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Reporting/Creating-Data-How-Please-Help/m-p/537431#M8724</guid>
      <dc:creator>simonafcbrown</dc:creator>
      <dc:date>2021-01-27T14:52:15Z</dc:date>
    </item>
    <item>
      <title>Re: Creating Data How Please Help!!</title>
      <link>https://community.splunk.com/t5/Reporting/Creating-Data-How-Please-Help/m-p/537434#M8725</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/230923"&gt;@simonafcbrown&lt;/a&gt;,&lt;BR /&gt;(relatively new member here as well so I might be wrong about some stuff and PLEASE anybody correct me if I write something wrong &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;)&lt;BR /&gt;From what I understand from your post you have already indexed your csv file through the "add Data" function of Splunk. &amp;nbsp;If not you have 2 options:&lt;BR /&gt;1.&lt;BR /&gt;Click the splunk logo(top left), click add Data and upload your csv as an input file.&lt;BR /&gt;During this process you can set an Index your Data will get sent into. (Default or custom Index)&lt;BR /&gt;To access this data in a search for your dashboard simply start your search with:&lt;BR /&gt;&lt;BR /&gt;index=yourIndexName&lt;BR /&gt;&lt;BR /&gt;searching with just this string will give you any indexed events in the selected time range!&lt;BR /&gt;Then you can follow up with your desired search.&lt;BR /&gt;&lt;BR /&gt;2.&lt;BR /&gt;You can also create a Lookup from your csv Data.&lt;BR /&gt;A &amp;nbsp;file with columns and rows can be loaded as a Lookup in Settings-&amp;gt;Lookup-&amp;gt;new file (Lookup table files)&lt;BR /&gt;Then also create a new Lookup Definition for your uploaded Lookup File.&lt;BR /&gt;You can access the created Lookup File in your search through:&lt;BR /&gt;&lt;BR /&gt;| inputlookup yourLookupName&lt;BR /&gt;&lt;BR /&gt;if all was done correctly you can search your source for data!&lt;BR /&gt;To add your search to a Dashboard just go to "Save as" in the top right of your search and create a Dashboard &amp;nbsp;from there. You can also add Searches to existing Dashboards here if you pick "Existing"&lt;BR /&gt;&lt;BR /&gt;I hope my explanation was helpful!&amp;nbsp;&lt;BR /&gt;&lt;BR /&gt;also for most of the questions you have, docs.splunk is your friend &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;BR /&gt;&lt;A href="https://docs.splunk.com/Documentation" target="_blank" rel="noopener"&gt;https://docs.splunk.com/Documentation&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 27 Jan 2021 15:44:58 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Reporting/Creating-Data-How-Please-Help/m-p/537434#M8725</guid>
      <dc:creator>FelixLeh</dc:creator>
      <dc:date>2021-01-27T15:44:58Z</dc:date>
    </item>
  </channel>
</rss>

