I am indexing Server.txt file from 1000+ forwarders. The file format is as below. I want to extract below header values as field while indexing it. Could someone please suggest what need to be added in props.conf of indexer to extract these fields. I am using splunk version of 6.4
ServerName,OSVersion,Make,Uptime,LastReboot (Fields to be extracted)
ServerName,OSVersion,Make,Uptime,LastReboot
Server1,Windows2008 R2,23hrs,10/10/2017
Server2,Windows2012 R2,13hrs,11/12/2107
Server3,Windows2012 R2,13hrs,11/11/2017
... View more