I was curious if it is possible to insert your own values into a chart/table? For instance if I had a search that returned five different host names in a column and in the next column it had a number that represented something. Could I manually create a third column and insert values that I need? If so what would the script look like to do this? Thanks in advance!
Hi henryt1,
I think you should look at lookups...
http://docs.splunk.com/Documentation/Splunk/latest/knowledge/Addfieldsfromexternaldatasources
If you're information is fairly static and can be stored in a csv file you should look here (this file obviously can be updated by a script if the need is required, but that's another story)...
http://docs.splunk.com/Documentation/Splunk/latest/User/CreateAndConfigureFieldLookups
Regards,
MHibbin