Getting Data In

How do I leave out timestamp from exported CVS filename (Scheduled)?

New Member

Hi all,

Splunk newbie here, I've searched the answers but can't find an answer...

I have saved a series of searches as reports and scheduled them to run periodically and to e-mail me the output. The reports, schedule and e-mail all work perfectly - EXCEPT for that the csv filenames have been suffixed with a timestamp, which I do not want (it has also truncated some of the filenames - which need to be picked up by a VBA script for another process)

Is there any way to stop the timestamp being added? Thanks.

0 Karma

Super Champion

between, please share with us your search query..

maybe, you can try to use email notification tokens..
http://docs.splunk.com/Documentation/Splunk/7.1.2/Alert/EmailNotificationTokens

0 Karma
State of Splunk Careers

Access the Splunk Careers Report to see real data that shows how Splunk mastery increases your value and job satisfaction.

Find out what your skills are worth!