Hi all
is there any option in splunk, so that we can list the table contents and their units along with the table name (such as seconds,percentage,hours) etc....
field1 time(secs)
blabla 1111
bla 2222
in other table instead of secs it will be percentage.. something similar to this
please help
thank you
Rename should do the job:
search... | table... | rename field as time(secs)
Rename should do the job:
search... | table... | rename field as time(secs)
edited mu question with some more info,, please go through and help me
Do you have a before/after example of what you want to change?