Getting Data In

Custom fields for CSV Input

Explorer

Hi All,

We have Splunk environment with Indexers clustered and many forwarders managed by Deployment server. We are monitoring some of CSV files of an application using Universal Forwarders. Now, Can I extract Index time fields (calculated fields) using existing column headers without altering the CSV file? If yes, Can you guide me to some documents?

Thanks in advance.

0 Karma

Motivator
0 Karma
State of Splunk Careers

Access the Splunk Careers Report to see real data that shows how Splunk mastery increases your value and job satisfaction.

Find out what your skills are worth!