I'm trying to get a very specific output format that can be fed into our ticketing system.
I have the following table in Splunk, top line is field names:
sender recipient subject email@example.com firstname.lastname@example.org example1 email@example.com firstname.lastname@example.org example2
This can either be a table or a set of stats values() multivalue fields.
I need the final table to output to a CSV like this:
sender email@example.com sender firstname.lastname@example.org recipient email@example.com recipient firstname.lastname@example.org subject example1 subject example2