Splunk Search

Colored table based on content

ritazreiby
New Member

I was wondering how to set the color of a table row based on a presence of word.for example i have an event that says a interface is down, i would like to color the whole row in red, and if interface is up i'd like to color the whole thing in green, any ideas on how to do it ?

Tags (2)
0 Karma

MHibbin
Influencer

Hi @ritazreiby,

I asked a question very similar to this earlier in the year. The following link is the question and answer:

http://splunk-base.splunk.com/answers/42994/advanced-xml-highlight-certain-values-in-a-table-not-num...

Cheers,

MHibbin

Get Updates on the Splunk Community!

See Splunk Platform & Observability Innovations at Cisco Live EMEA

Hi Splunkers, Learn about what’s next for Splunk Platform at Cisco Live EMEA.  Data silos are a big challenge ...

The OpenTelemetry Certified Associate (OTCA) Exam

What’s this OTCA exam? The Linux Foundation offers the OpenTelemetry Certified Associate (OTCA) credential to ...

From Manual to Agentic: Level Up Your SOC at Cisco Live

Welcome to the Era of the Agentic SOC   Are you tired of being a manual alert responder? The security ...