Splunk Search

How to list chosen fields in one field?

nathanluke1986
Engager

Hello,

I am trying to list fields I have selected into a single field to display in a dashboard.

Currently trying   | eval Details = mvappend('src', 'dest')  but this only lists the values what I am trying to achieve is listing field name and value for example.

src=192.168.0.1

dest=192.168.0.2

etc 

etc

 

any help appreciated.

thanks

 

 

Labels (2)
0 Karma

smurf
Communicator

Hi,

you can concatenate strings together with eval.

| eval src="src=" + src

This would result in src field containing "src=192.168.0.1".  For a few fields, this would be easy to do.

 

smurf

0 Karma
Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...