Splunk Dev

How to apply the field color on the table results with multi-value fields based on the first value

kelz
Explorer

Is it possible to apply the color based on the first value on the multi-value fields?

Below is the sample data. If the first value of server_status is Online then the field color should turn into green else the color will be red.

hostnameserver_status
server101Online
Offline (31 days ago)
  
  
hostnameserver_status
server101Offline (31 days ago)
Online




Labels (1)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

You can change the background rather than the font colour using colorPalette - add another multivalue with a value representing the colour you want used, then use CSS to hide the extra value.

0 Karma
Get Updates on the Splunk Community!

Splunk App Dev Community Updates – What’s New and What’s Next

Welcome to your go-to roundup of everything happening in the Splunk App Dev Community! Whether you're building ...

The Latest Cisco Integrations With Splunk Platform!

Join us for an exciting tech talk where we’ll explore the latest integrations in Cisco + Splunk! We’ve ...

Enterprise Security Content Update (ESCU) | New Releases

In April, the Splunk Threat Research Team had 2 releases of new security content via the Enterprise Security ...