Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

Sourcetype configuration - Duplicate fields

$
0
0
Hello Splunkers, I am trying to configure a sourcetype in Advanced section. For example, I create a field alias by creating the key/value: ![alt text][1] [1]: /storage/temp/254920-1.jpg When I perform search on the data, I see both MD5 and md5 fields to be extracted and containing the same values. However, I want to see only md5 in Interesting fields. Why do I see both fields? Thank you in advance! Afroditi

Viewing all articles
Browse latest Browse all 47296

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>