Dashboards & Visualizations

XML and XSD data in Splunk 6

david_rundle_fi
Explorer

I have a number of XML log files, and each version of the product has a slightly different schema. (more advanced, more reportable features) I've created an XSD file that encompasses all of the product versions, and I want to use the XSD to define the data model for reporting.

How do I use the XSD to create the data model, and can I use that same XSD to define the data structure for my imports as well?

Thanks!

0 Karma

david_rundle_fi
Explorer

I changed tactics on this one - I used an XML stylesheet to render out the sections that I wanted from the XML as a CSV, and imported into splunk.

0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...