Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

change column name with specified new column value in Splunk

$
0
0
Hi, I am having correct value in current field and want to use that value as column name which is currently showing as A. Please help to solve this issue. For any other information please let me know. e.g if current is '06-24-2018' then in table header row should have column name as '06-24-2018' | base search | eval current = strftime(currentTime,"%m-%d-%Y") | eval A = if(P1C>0 OR P2C>0,"R",if(P3C>0,"Y","G")) | table "Project",A

Viewing all articles
Browse latest Browse all 47296

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>