Splunk Search

Is it possible to create an html unorder (bullet) list for each row of a table output?

timgren
Path Finder

Id like to create table of results, and convert each row into an unordered bullet list using html. 

Such as: 

| table result   (which has n number of results) 
Then in the output, i want to show each in an unordered bullet list.

<html>
<ul>
    <li> row.result.1
    <li> row.result.2
    <li> row.result.3
etc... 
</ul>
</html> 

Possible? 


Labels (1)
Tags (2)
0 Karma

livehybrid
SplunkTrust
SplunkTrust

Hi @timgren 

Something like this?

| eval row="<li>".result."</li>"
| stats values(row) as html_list 
| eval html_list = "<ul>".mvjoin(html_list, "")."</ul>" 
| table html_list

livehybrid_0-1746547974884.png

Full example

| makeresults count=3 
| streamstats count
| eval result = "result".count 
| table result
| eval row="<li>".result."</li>"
| stats values(row) as html_list 
| eval html_list = "<ul>".mvjoin(html_list, "")."</ul>" 
| table html_list

🌟 Did this answer help you? If so, please consider:

  • Adding karma to show it was useful
  • Marking it as the solution if it resolved your issue
  • Commenting if you need any clarification

Your feedback encourages the volunteers in this community to continue contributing

0 Karma
Get Updates on the Splunk Community!

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...

Unlock Instant Security Insights from Amazon S3 with Splunk Cloud — Try Federated ...

Availability: Must be on Splunk Cloud Platform version 10.1.2507.x to view the free trial banner. If you are ...