当前位置:网站首页>Define event types in Splunk Web
Define event types in Splunk Web
2022-07-31 08:22:00 【shenghuiping2001】
1: 先看到这样一个界面,是不是就想把status=200, 和非200 的 event 区别出来:

2: 那么用上event type 就再好不过啦:
Steps:
Saving a search as an event type
In the Search view, run a search.
Click Save As and select Event Type.
Give the event type a unique Name.
(Optional) Add one or more comma-separated Tag(s).
You can apply the same tag to event types that produce similar results. A search that is just on that tag returns the set of events that collectively belong to those event types.(Optional) Select a Color.
This causes a band of color to appear at the start of the listing for any event that fits this event type. For example, this event matches an event type that has a Color of Purple.
You can change the color of an event type (or remove its color entirely) by editing it in Settings.(Optional) Give the event type a Priority.
Priority affects the display of events that match two or more event types. 1 is the best Priority and 10 is the worst. See About event type priorities.Click Save to save the new event type.
You can access the list of event types that you and other users have created at Settings > Event types.
Any event type that you create with this method also appears on the Event Types listing page in Settings. You can update the event type in the Event Types listing page.
参考文档:Define event types in Splunk Web - Splunk Documentation
利用 eventtype, 注意,不是source type, 就是对事件进行过滤,分类的条件可以在 search 语句中先体现出来:

边栏推荐
- [转载] Virtual Studio 让系统找到需要的头文件和库
- MySQL 5.7 安装教程(全步骤、保姆级教程)
- SSM框架讲解(史上最详细的文章)
- tqdm库的使用
- [Mini Program Project Development--Jingdong Mall] Custom Search Component of uni-app (Middle)--Search Suggestions
- Failure scenarios of @Transactional annotations
- SQL 嵌套 N 层太长太难写怎么办?
- Modular specifications
- 【MySQL功法】第2话 · 数据库与数据表的基本操作
- 0730~Mysql优化
猜你喜欢
随机推荐
[转载] Virtual Studio 让系统找到需要的头文件和库
MySQL 5.7升级到8.0详细过程
傅里叶变换,拉普拉斯变换学习记录
google搜索技巧——程序员推荐
48页智慧城市规划蓝图 解决方案
[MySQL exercises] Chapter 3 Common data types in MySQL
MySQL安装常见报错处理大全
SQLAlchemy使用教程
C语言三子棋(井字棋)小游戏
【小程序项目开发-- 京东商城】uni-app之自定义搜索组件(下) -- 搜索历史
求职产品经理【九】求职季,如何写好一份简历?
[Cloud native and 5G] Microservices support 5G core network
2022/7/30 考试总结
Modular specifications
XSS详解
2022杭电杯超级联赛3
Open Source | Commodity Recognition Recommender System
全国中职网络安全B模块之国赛题远程代码执行渗透测试 PHPstudy的后门漏洞分析
【MySQL中auto_increment有什么作用?】
关于@Autowired










