Getting Data In

CSV Import: fieds name are missing, but showing up while uploading process.

wes7bb
New Member

Hi there,

i tried to upload a csv-file. During Uploading I could separate the fields with a "comma" and the field name was displayed in the table (see screenshot 1).

Now I would like to search for the events with using the field names. But the field names are not extracted. Is there a possibility to extract the fields automatically with names that they can be used in the search? (see screenshot 2)

Thanks a lot for your help!

Yours Sina

alt text

alt text

0 Karma
1 Solution

p_gurav
Champion

Hi wes7bb,

Which search mode you are using? Search in verbose mode.

View solution in original post

0 Karma

harsmarvania57
SplunkTrust
SplunkTrust

Hi @wes7bb,

Can you please provide your props.conf configuration for sourcetype csv_AH ?

0 Karma

wes7bb
New Member

thanks for your help. Searching in the Verbose Mode was the solution.

0 Karma

p_gurav
Champion

Hi wes7bb,

Which search mode you are using? Search in verbose mode.

0 Karma
Get Updates on the Splunk Community!

Starting With Observability: OpenTelemetry Best Practices

Tech Talk Starting With Observability: OpenTelemetry Best Practices Tuesday, October 17, 2023   |  11AM PST / ...

.conf23 | Get Your Cybersecurity Defense Analyst Certification in Vegas

We’re excited to announce a new Splunk certification exam being released at .conf23! If you’re going to Las ...

Streamline Data Ingestion With Deployment Server Essentials

REGISTER NOW! Every day the list of sources Admins are responsible for gets bigger and bigger, often making ...