Event type finder and builder
This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Event type finder and builder
The event type finder capability allows Splunk to intelligently discover common patterns across events suggesting potential event types to the users. Additionally, users can now use Splunk's event type builder to manually construct event types via the user interface by selecting from common fields and field values that appear in results.
For more information, see Define and maintain event types in Splunk Web.
This documentation applies to the following versions of Splunk: 4.1 , 4.1.1 , 4.1.2 , 4.1.3 , 4.1.4 , 4.1.5 , 4.1.6 , 4.1.7 , 4.1.8 View the Article History for its revisions.