Hello,
I want to display only the specify field(s) of the logs in the results display.
Using:
*|fields + ProductName
Instead of displaying only the ProductName field,
splunk display me with the whole log.
Is there something wrong with the search string i key in?
or i grip the concept of fields function wrongly?
Thanks in advance.
... View more