Hi for some reason fieldformat didn't work with foreach x,y,z. Sometimes it works mostly didn't. Here is same which didn't work in at least our Splunk 7.3.3 or 8.0.5. Any hints is welcome. &n...
...t like this, but I would have to know all possible products.
....
| fieldformat productA=tostring(productA, "commas")." €"
Is there a way to achieve this with the foreach command? I was not a...
I have a dashboard with several multi-value fields containing IP details. I applied the following fieldformat command to truncate the result of such fields for the dashboard view. | fieldformat i...
...rice
the revenue field calculates correctly. If I structure a bit differently:
sourcetype=access_combined action=purchase | stats sum(price) as Price by product_name, productId | fieldformat r...
Hi,
I have this query. If I change fieldformat to eval the query works but if it is left as fieldformat the query returns no results. First time I'm trying to use fieldformat so I don't quite u...
...sually obtain that through a search query like this:
|fieldformat dailyAverage= tostring(dailyAverage,"commas")
This query line works until I run a stats command and try to list the values. I...
Hey guys
Is there a quick way to format data?
I want to format data like this
<search> |fieldformat test1a=tonumber(test1a)
It works but I have more than 60 columns to do
so I...