My query searches for eventcode and displays (host, time, task category, message) i want to use some color to highlight all same hosts generating multiple eventcode??
please help with the query
Once report is generated, you can edit columns and apply color based on field text.
Put your search query and create an new event type based on your hosts and set the priority so that we will get host highlighted in your search result.
i want entire row to be highlighted with some colors based on same hosts??
can you please help with query??
It's easy to apply color for values in a column. you have to save the report or add report to dashboard to apply colors to single column like below:
but your requirement is to color entire line based on one field text value, in this case you have to write js and css as mentioned in below answers.
https://community.splunk.com/t5/Splunk-Search/Change-the-color-of-rows-in-a-table-based-on-text-valu...