Dashboards & Visualizations

Need to align the table output

senthamilselvan
Engager

Hi Team,
I have imported the logs and i used search query using multikv. The fields are generated fine, but the table alignment is not looking good.
Please find the search query and the output.
index=test sourcetype=gglogs3 | multikv |table REPSD REPHG RPLXP

I have attached the output. In the output, i want to remove all the empty lines and also "====" as well.

alt text

Tags (1)
0 Karma

DEAD_BEEF
Builder

You can specify in your query that there must be a value in a field, that is do not allow blanks to be in your results by using

REPSD=* REPHG=* RPLXP=*

You can eliminate fields with certain values (=) by using:

REPSD=* REPHG=* RPLXP=* AND NOT (REPSD="*=*" OR REPHG="*=*" OR RPLXP="*=*")
0 Karma

p_gurav
Champion

Hi senthamilselvanj,

You can try using | search (REPSD=* NOT REPSD="*=*") (REPHG=* NOT REPSD="*=*") RPLXP=* before your search query

0 Karma
Get Updates on the Splunk Community!

Threat Hunting Unlocked: How to Uplevel Your Threat Hunting With the PEAK Framework ...

WATCH NOWAs AI starts tackling low level alerts, it's more critical than ever to uplevel your threat hunting ...

Splunk APM: New Product Features + Community Office Hours Recap!

Howdy Splunk Community! Over the past few months, we’ve had a lot going on in the world of Splunk Application ...

Index This | Forward, I’m heavy; backward, I’m not. What am I?

April 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...