Splunk Enterprise Security

Customize report

ajayrejin
Explorer

Hi,

I have a requirement to customize the report generated in csv format, this is a scheduled report.
The report in .csv must have two sheets. First sheet should have splunk logo and time frame the report is for.
Second sheet should contain report name and the data .

Is there any way i customize the csv to include the above.

Thanks,
Ajay

0 Karma

efavreau
Motivator

You can not customize it in Splunk. You would need to do it manually every time.
Further, when you discuss "sheets", that's an Excel/spreadsheet concept, not a csv concept.

###

If this reply helps you, an upvote would be appreciated.
0 Karma

ajayrejin
Explorer

Okay. Can i use custom token in the email header of the report to show the month for which the report is run.
like use eval to create a custom field and use that field in the email header.

0 Karma

efavreau
Motivator

Not exactly. However, in the docs, there's a list of variables that can be used:
https://docs.splunk.com/Documentation/Splunk/Latest/Alert/EmailNotificationTokens

You could edit some conf files to create a new variable. Or you might be able to find something you can use with $job.latestTime$ or $result.fieldname$

###

If this reply helps you, an upvote would be appreciated.
0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas

Why Splunk Customers Should Attend Cisco Live 2026 Las Vegas     Cisco Live 2026 is almost here, and this ...

What Is the Name of the USB Key Inserted by Bob Smith? (BOTS Hint, Not the Answer)

Hello Splunkers,   So you searched, “what is the name of the usb key inserted by bob smith?”  Not gonna lie… ...

Automating Threat Operations and Threat Hunting with Recorded Future

    Automating Threat Operations and Threat Hunting with Recorded Future June 29, 2026 | Register   Is your ...