Splunk Search

splunk delims

vinod_5279
Engager

I am getting my result table from my json log as shown below

vinod_5279_0-1598508632810.png



But i want result of my line number 10 should be like below

1.0.9                                                                           feature-Tibco Communicator
                                                                                                      Secrets Secure
                                                                                                       commons splunk dashboard

 

0 Karma
1 Solution

to4kawa
Ultra Champion

makemv delim="/n" your_fieldname

View solution in original post

0 Karma

Shankar2677
Loves-to-Learn Lots

Hey Mate 

Just Use Splunk DELIMS in place of REGEX when dealing with ASCII-only delimiter-based field extractions, where field values or field/value pairs are separated by delimiters such as commas, colons, spaces, tab spaces, line breaks, and so on.

0 Karma

bhoopalkiran
New Member

Use Splunk DELIMS in place of REGEX when dealing with ASCII-only delimiter-based field extractions, where field values or field/value pairs are separated by delimiters such as commas, colons, spaces, tab spaces, line breaks, and so on.

makemv delim="/n" your_fieldname

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

It looks like you need to replace "/n" with "\n" or perhaps "\n\t"

0 Karma

to4kawa
Ultra Champion

makemv delim="/n" your_fieldname

0 Karma
Get Updates on the Splunk Community!

Index This | How many sides does a circle have?

February 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

Registration for Splunk University is Now Open!

Are you ready for an adventure in learning?   Brace yourselves because Splunk University is back, and it's ...

Splunkbase | Splunk Dashboard Examples App for SimpleXML End of Life

The Splunk Dashboard Examples App for SimpleXML will reach end of support on Dec 19, 2024, after which no new ...