Transcription of Concepts Additional Features - Splunk
{{id}} {{{paragraph}}}
QUICK REFERENCE GUIDEUse the Field Extractor tool to automatically generate and validate field extractions at search-time using regular expressions or delimiters such as spaces, commas, or other g s A tag is a knowledge object that enables you to search for events that contain particular field values. You can assign one or more tags to any field/value combination, including event types, hosts, sources, and source types. Use tags to group related field values together, or to track abstract field values such as IP addresses or ID numbers by giving them more descriptive and Search-Time During index-time processing, data is read from a source on a host and is classified into a source type. Timestamps are extracted, and the data is parsed into individual events.
QUICK REFERENCE GUIDE A tag is a knowledge object that enables you to search for events that contain particular field values. You can assign one or more tags to …
Domain:
Source:
Link to this page:
Please notify us if you found a problem with this document:
{{id}} {{{paragraph}}}