Dashboards & Visualizations

XML and XSD data in Splunk 6

david_rundle_fi
Explorer

I have a number of XML log files, and each version of the product has a slightly different schema. (more advanced, more reportable features) I've created an XSD file that encompasses all of the product versions, and I want to use the XSD to define the data model for reporting.

How do I use the XSD to create the data model, and can I use that same XSD to define the data structure for my imports as well?

Thanks!

0 Karma

david_rundle_fi
Explorer

I changed tactics on this one - I used an XML stylesheet to render out the sections that I wanted from the XML as a CSV, and imported into splunk.

0 Karma
Get Updates on the Splunk Community!

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...

Cloud Monitoring Console - Unlocking Greater Visibility in SVC Usage Reporting

For Splunk Cloud customers, understanding and optimizing Splunk Virtual Compute (SVC) usage and resource ...

Automatic Discovery Part 3: Practical Use Cases

If you’ve enabled Automatic Discovery in your install of the Splunk Distribution of the OpenTelemetry ...