Hi guys,
I'll appreciate your help for my question. Well, I have a data file that has ten fields and I need cut only two and only two fields can be indexed. What do I do ?
Thanks!
Rafael Martins
Please provide some samples for more explicit help, but I think you could have a look here, where the process of selectively discarding parts of an event is described.
http://docs.splunk.com/Documentation/Splunk/6.0.1/Data/Anonymizedatausingconfigurationfiles
/k
Please provide some samples for more explicit help, but I think you could have a look here, where the process of selectively discarding parts of an event is described.
http://docs.splunk.com/Documentation/Splunk/6.0.1/Data/Anonymizedatausingconfigurationfiles
/k