Hello community,
like to ask for support to get over conditional formatting. I have 3 different products in a group. Product A, B and C and I need to add for each of them a different formula (c...
I would like to make use of the formatfunction to modify the results of a sub-search. I'm getting spaces in the output that are causing problems with my search. I'm using CASE in the result to m...
...ead here, Selectorandformattingfunctions, that I can use matchValue(). After resolving all the json errors (brackets and braces missing), no change in the color of cell background. Thanks in a...
...he percentile function to these daily maxes (there might be a better way of doing this):
index=_internal sourcetype=* sourcetype=splunkd | timechart span=d count(series) as t count(file) as t2 b...
Does anyone know the formatting for doing a post using the splunkjs Endpoints function to an inputs.conf?
I can get it like this:
let splunk_service = splunkjs.mvc.createService({owner: 'n...
Hi Splunk experts,
Need to understand the basic function of these stanza's FORMAT, DEST_KEY, SOURCE_KEY and MV_ADD and where/which circumstances we need to use these in transforms.conf.
I h...
Is it possible to extend the export capabilities from splunk, in order to export to other formats :
- export all _raw events to zip format
- export xml fields to zip file with xml files...
I...
Could someone please help me convert epoch time to human readable time?
"time":1407361408100
this is what i'm trying to get "time":"Wed, 06 Aug 2014 21:43:28"
Hi, everyone, I have an old dashboard that I want to convert to the Dashboard Studio format. However, it seems that the new Dashboard Studio does not support the use of prefix, suffix, and d...
...roduces multiple results for some fields:
The problem is that certain standard functions such as color formatting (e.g. make "failed" cells red) and post-transaction filtering (e.g. search s...