<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic How could I exclude the selected fields like &amp;quot;host&amp;quot;, &amp;quot;source&amp;quot;,&amp;quot;sourcetype&amp;quot; in the event column which is displayed on the in Splunk Search</title>
    <link>https://community.splunk.com/t5/Splunk-Search/How-could-I-exclude-the-selected-fields-like-quot-host-quot-quot/m-p/582503#M202880</link>
    <description>&lt;P&gt;Hi, all!&lt;/P&gt;&lt;P&gt;I wish to display the event without the fields like&amp;nbsp;"host", "source", and "sourcetype" like the photo below on my dashboard.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Jennifer_0-1643190040081.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/17676iD6CFC04862BAE614/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Jennifer_0-1643190040081.png" alt="Jennifer_0-1643190040081.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;But when I save it as a dashboard, it still shows these fields!&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Jennifer_1-1643190358690.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/17677iF11D2497B1EB8EC8/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Jennifer_1-1643190358690.png" alt="Jennifer_1-1643190358690.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;How could I solve the problem?&lt;/P&gt;</description>
    <pubDate>Wed, 26 Jan 2022 09:47:48 GMT</pubDate>
    <dc:creator>Jennifer</dc:creator>
    <dc:date>2022-01-26T09:47:48Z</dc:date>
    <item>
      <title>How could I exclude the selected fields like "host", "source","sourcetype" in the event column which is displayed on the</title>
      <link>https://community.splunk.com/t5/Splunk-Search/How-could-I-exclude-the-selected-fields-like-quot-host-quot-quot/m-p/582503#M202880</link>
      <description>&lt;P&gt;Hi, all!&lt;/P&gt;&lt;P&gt;I wish to display the event without the fields like&amp;nbsp;"host", "source", and "sourcetype" like the photo below on my dashboard.&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Jennifer_0-1643190040081.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/17676iD6CFC04862BAE614/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Jennifer_0-1643190040081.png" alt="Jennifer_0-1643190040081.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;But when I save it as a dashboard, it still shows these fields!&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;span class="lia-inline-image-display-wrapper lia-image-align-inline" image-alt="Jennifer_1-1643190358690.png" style="width: 400px;"&gt;&lt;img src="https://community.splunk.com/t5/image/serverpage/image-id/17677iF11D2497B1EB8EC8/image-size/medium?v=v2&amp;amp;px=400" role="button" title="Jennifer_1-1643190358690.png" alt="Jennifer_1-1643190358690.png" /&gt;&lt;/span&gt;&lt;/P&gt;&lt;P&gt;How could I solve the problem?&lt;/P&gt;</description>
      <pubDate>Wed, 26 Jan 2022 09:47:48 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/How-could-I-exclude-the-selected-fields-like-quot-host-quot-quot/m-p/582503#M202880</guid>
      <dc:creator>Jennifer</dc:creator>
      <dc:date>2022-01-26T09:47:48Z</dc:date>
    </item>
    <item>
      <title>Re: How could I exclude the selected fields like "host", "source","sourcetype" in the even</title>
      <link>https://community.splunk.com/t5/Splunk-Search/How-could-I-exclude-the-selected-fields-like-quot-host-quot-quot/m-p/582504#M202881</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/242045"&gt;@Jennifer&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;You have two ways:&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;in the bottom of each event, the selected fields are displayed, if you don't want to display them you have to delesct them in the left side of your form.&lt;/LI&gt;&lt;LI&gt;You could also display them in raw form so you haven't the selected fields.&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;But think carefully to this because host ans sourcetype are very relevant fields for your analysis.&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Wed, 26 Jan 2022 09:52:35 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/How-could-I-exclude-the-selected-fields-like-quot-host-quot-quot/m-p/582504#M202881</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2022-01-26T09:52:35Z</dc:date>
    </item>
    <item>
      <title>Re: How could I exclude the selected fields like "host", "source","sourcetype" in the even</title>
      <link>https://community.splunk.com/t5/Splunk-Search/How-could-I-exclude-the-selected-fields-like-quot-host-quot-quot/m-p/582681#M202934</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/242045"&gt;@Jennifer&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;good for you, see next time!&lt;/P&gt;&lt;P&gt;Ciao and happy splunking.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;&lt;P&gt;P.S.: Karma Points are appreciated &lt;span class="lia-unicode-emoji" title=":winking_face:"&gt;😉&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jan 2022 07:14:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/How-could-I-exclude-the-selected-fields-like-quot-host-quot-quot/m-p/582681#M202934</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2022-01-27T07:14:40Z</dc:date>
    </item>
    <item>
      <title>Re: How could I exclude the selected fields like "host", "source","sourcetype" in the even</title>
      <link>https://community.splunk.com/t5/Splunk-Search/How-could-I-exclude-the-selected-fields-like-quot-host-quot-quot/m-p/582687#M202936</link>
      <description>&lt;P&gt;| table _time _raw&lt;/P&gt;</description>
      <pubDate>Thu, 27 Jan 2022 07:40:20 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/How-could-I-exclude-the-selected-fields-like-quot-host-quot-quot/m-p/582687#M202936</guid>
      <dc:creator>johnhuang</dc:creator>
      <dc:date>2022-01-27T07:40:20Z</dc:date>
    </item>
  </channel>
</rss>

