Hi,
I have just started working with Splunk 6. I have created a Data Model for my data source and have added some field extraction/regular expression attributes to it. As per the knowledge that I have till now from documentation, these data model/attributes are used in Pivot reports. Is is possible to use them in regular search some how?
I don't want to again have field extraction setup explicitly.
Appreciate your help here.
There is a "pivot" search command that should allow you to do anything you can do in the pivot interface:
http://docs.splunk.com/Documentation/Splunk/6.0/SearchReference/Pivot
There is a "pivot" search command that should allow you to do anything you can do in the pivot interface:
http://docs.splunk.com/Documentation/Splunk/6.0/SearchReference/Pivot