Splunk Search

Possible To Insert Your Own Values?

Path Finder

I was curious if it is possible to insert your own values into a chart/table? For instance if I had a search that returned five different host names in a column and in the next column it had a number that represented something. Could I manually create a third column and insert values that I need? If so what would the script look like to do this? Thanks in advance!

Tags (3)
0 Karma


Hi henryt1,

I think you should look at lookups...


If you're information is fairly static and can be stored in a csv file you should look here (this file obviously can be updated by a script if the need is required, but that's another story)...