Activity Feed
- Posted Re: Cluster Map: Problem with Zoom & Center in Dashboard on Deployment Architecture. 03-03-2022 06:56 AM
- Posted Re: How to build a table from different fields from a single event on Splunk Search. 01-11-2022 03:20 AM
- Posted How to build a table from different fields from a single event on Splunk Search. 01-11-2022 01:47 AM
- Got Karma for Re: Sum with multivalue token. 11-29-2021 03:09 AM
- Posted Re: Sum with multivalue token on Dashboards & Visualizations. 11-29-2021 12:54 AM
- Posted Sum with multivalue token on Dashboards & Visualizations. 11-24-2021 12:36 AM
Topics I've Started
Subject | Karma | Author | Latest Post |
---|---|---|---|
0 | |||
0 |
03-03-2022
06:56 AM
Facing the same issue ☹️ Any update?
... View more
01-11-2022
03:20 AM
Works great 🙂 Just had to filter out the other unrelated fields from the event. Thanks a lot!
... View more
01-11-2022
01:47 AM
Hello I'm having this situation where I have a query returning a single event and I need to build a compound table from different fields from that event. Here are the fields: severity severity_id riskFactor riskFactor_id exploitAvailable exploitAvailable_id How can I build a table like this: Indicator Value Id Severity severity severity_id Risk Factor riskFactor riskFactor_id Exploit Available exploitAvailable exploitAvailable_id Thanks for your help!
... View more
11-24-2021
12:36 AM
How to sum the values of a multivalue token in Simple XML? Let's say you have a mv token named test1 with values of: 1,2,3 How to achieve something like: <eval token="test2">sum($test1$)</eval> Thanks!
... View more
Labels
- Labels:
-
simple XML