Hi Team,
When i search splunk for windows events i am getting the result in xml format. Is there any way we can change the view from xml format to any easily readable format?
Hi ITwhisperer, Thanks for the reply. My requirement is when i simply query splunk for the event details the event descriptions are showing in xml format. So its really difficult for me to exactly see. Previously i can see the event description/details in normal html format.
You can extract fields from the xml using various techniques and display them in a table or chart depending on your requirements. What information are you interested in from your XML events?