I know how to set Values. multiselect . val (value_ array ); BUT: Is there a way to set the labels to a different value (not the actual value)? For Example: i want to be able to s...
I want to search data from "earliest" to "earliest" + 5 minutes later.
How should I implement it ?
I tried the following, but failed.
index=xxxx earliest="yyyy/mm/dd hh:mm:ss" latest=earlies...
I need to set this for my Windows deployment clients only. Can I add this entry to the WEB.CONF or can I only add this to the DEPLOYMENTCLIENT.CONF?
If so how does it have the same impact on my H...
...TC timezone. What am I missing? Why won't the indexers correct the time?
The Palo app takes in logs using the pan_log sourcetype. It then runs transforms to set the correct sourcetype to p...
Hello All, Hope you all are doing good!! I am trying to send some data to Splunk using UF. Below are my settings but I am getting data to Splunk without breaking the lines as I specified in my s...
...ost2 host 3 B: host host 2 host 3 host 4 I'd like to execute search that uses results of both saved searches to perform set subtraction: A - B. So in this example I should get host1 as an result. T...
...nd it gets more and more confused: https://www.splunk.com/en_us/resources/videos/splunk-cloud-tutorial.html https://community.splunk.com/t5/Getting-Data-In/How-to-set-up-a-heavy-forwarder-to-forward-d...
Hey,
I am tasked with creating a bar chart for one of my dashboard panels and the colour of the bar chart must be pink. I am using: <option name="charting.fieldColors">0xff66cc</option...