<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Object Name filtering with Diffrent folder structrue in Splunk Search</title>
    <link>https://community.splunk.com/t5/Splunk-Search/Object-Name-filtering-with-Diffrent-folder-structrue/m-p/385781#M195906</link>
    <description>&lt;P&gt;we have  one Network folder :  clientreports &lt;/P&gt;

&lt;P&gt;Standard Reports Structure as :&lt;BR /&gt;
• Path/Foldername/Report Type/Client/Report Period Folders/Files.&lt;BR /&gt;
Ex: R:/Clientfolder/Coaching Dashboard/ BCBS AZ/YYYY_MM/PDF, Excel.&lt;/P&gt;

&lt;P&gt;This is Report Type : I used Rex functionn to read and extract Report Type from Object_Name.&lt;BR /&gt;
&lt;IMG src="https://community.splunk.com/storage/temp/262699-objectname.png" alt="alt text" /&gt;&lt;/P&gt;

&lt;P&gt;having 27 standard reports folder structure ,&lt;/P&gt;

&lt;P&gt;1)  MonthlyActivityReport.&lt;BR /&gt;
2)  MonthlyActivityReportDashboard&lt;BR /&gt;
3)  CoachingDemographicReport(vc,lc,wt)&lt;BR /&gt;
4)  CoachingDemographicReport_LC&lt;BR /&gt;
5)  CoachingDemographicReport_VC&lt;BR /&gt;
6)  CoachingDemographicReport_WT&lt;/P&gt;

&lt;H2&gt;7)  QuarterlyProgressReport&lt;/H2&gt;

&lt;P&gt;--&lt;BR /&gt;
27) bla bal bla&lt;/P&gt;

&lt;P&gt;1st Question is how to Extarct only these 27 folder structure in Splunk Because of in Object name we have different different folder structure &lt;BR /&gt;
some example as :&lt;/P&gt;

&lt;P&gt;1)  Report Type/Report Category/ Files  -&lt;BR /&gt;&lt;BR /&gt;
EX: iHealth_OpenCaseReport/Datafiles,logfiles/Text Files,Excel file.&lt;BR /&gt;
2)  ReportType/Report  Period Folder/ Files -&lt;BR /&gt;
Ex: NICU_Outcomes/2015,2016/PDF Files or Excel Files.&lt;BR /&gt;
3)  Report Type/Client/Report Period Folders/Files.&lt;BR /&gt;
Ex: aternityOutcomes/ BCBS AZ/2014_12,2015_12/PDF Files.&lt;/P&gt;

&lt;P&gt;How &lt;/P&gt;</description>
    <pubDate>Tue, 29 Sep 2020 22:34:28 GMT</pubDate>
    <dc:creator>shishirkumar</dc:creator>
    <dc:date>2020-09-29T22:34:28Z</dc:date>
    <item>
      <title>Object Name filtering with Diffrent folder structrue</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Object-Name-filtering-with-Diffrent-folder-structrue/m-p/385781#M195906</link>
      <description>&lt;P&gt;we have  one Network folder :  clientreports &lt;/P&gt;

&lt;P&gt;Standard Reports Structure as :&lt;BR /&gt;
• Path/Foldername/Report Type/Client/Report Period Folders/Files.&lt;BR /&gt;
Ex: R:/Clientfolder/Coaching Dashboard/ BCBS AZ/YYYY_MM/PDF, Excel.&lt;/P&gt;

&lt;P&gt;This is Report Type : I used Rex functionn to read and extract Report Type from Object_Name.&lt;BR /&gt;
&lt;IMG src="https://community.splunk.com/storage/temp/262699-objectname.png" alt="alt text" /&gt;&lt;/P&gt;

&lt;P&gt;having 27 standard reports folder structure ,&lt;/P&gt;

&lt;P&gt;1)  MonthlyActivityReport.&lt;BR /&gt;
2)  MonthlyActivityReportDashboard&lt;BR /&gt;
3)  CoachingDemographicReport(vc,lc,wt)&lt;BR /&gt;
4)  CoachingDemographicReport_LC&lt;BR /&gt;
5)  CoachingDemographicReport_VC&lt;BR /&gt;
6)  CoachingDemographicReport_WT&lt;/P&gt;

&lt;H2&gt;7)  QuarterlyProgressReport&lt;/H2&gt;

&lt;P&gt;--&lt;BR /&gt;
27) bla bal bla&lt;/P&gt;

&lt;P&gt;1st Question is how to Extarct only these 27 folder structure in Splunk Because of in Object name we have different different folder structure &lt;BR /&gt;
some example as :&lt;/P&gt;

&lt;P&gt;1)  Report Type/Report Category/ Files  -&lt;BR /&gt;&lt;BR /&gt;
EX: iHealth_OpenCaseReport/Datafiles,logfiles/Text Files,Excel file.&lt;BR /&gt;
2)  ReportType/Report  Period Folder/ Files -&lt;BR /&gt;
Ex: NICU_Outcomes/2015,2016/PDF Files or Excel Files.&lt;BR /&gt;
3)  Report Type/Client/Report Period Folders/Files.&lt;BR /&gt;
Ex: aternityOutcomes/ BCBS AZ/2014_12,2015_12/PDF Files.&lt;/P&gt;

&lt;P&gt;How &lt;/P&gt;</description>
      <pubDate>Tue, 29 Sep 2020 22:34:28 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Object-Name-filtering-with-Diffrent-folder-structrue/m-p/385781#M195906</guid>
      <dc:creator>shishirkumar</dc:creator>
      <dc:date>2020-09-29T22:34:28Z</dc:date>
    </item>
  </channel>
</rss>

