Hi Team,
When am putting any search command, am getting column names as one of the value, and getting displayed in report also. I do not want to display the column name as value, please suggest me the solution.
Pramodkumar, then in the spirit of support to others who may follow you in the same issue, even if self-inflicted (we all learn), post it here. It's a good community, and this will not be the last time you need help...trust me 😉
We all do.
given as NOT "Field1, Field2..".. this resolved my problem.
in command syntax mention "NOT" with your any single column name, should resolve your problem..
Could we get a little more information as to one of your searches using your answer?
Found the required solution.. it worked
Right, I got that part but we need to see the search or example data to see whats happening. Its not normal behaviour for Splunk to include field names as values, unless they are also in the values or you're doing something funky in the search
Getting the
You need to give us a bit more detail than this, such as a search / example data...