Reporting

How can I export search results as LEEF (Log Event Extended Format (LEEF) - IBM)

ryoji_solsys
Explorer

Splunk doesn't seem to have a supported option to export data as LEEF.

Could anyone please suggest any customized way to export data as LEEF ?

Thanks,
R

Tags (1)
0 Karma

jkat54
SplunkTrust
SplunkTrust

You can use eval statements like mvappend to create one field in LEEF format and then export to csv...

0 Karma
Get Updates on the Splunk Community!

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...