Set search-time event segmentation in Splunk Web
Splunk Web allows you to set segmentation for search results. While this has nothing to do with index-time segmentation, search-time segmentation in Splunk Web affects browser interaction and can speed up search results.
To set search-result segmentation:
1. Perform a search. Look at the results.
2. Click Options... above the returned set of events.
3. In the Event Segmentation dropdown box, choose from the available options: full, inner, outer, or raw. The default is "full".
You can configure the meaning of these dropdown options, as described in "Set the segmentation for event data".
Set the segmentation for event data
Use a test index to test your inputs
This documentation applies to the following versions of Splunk Cloud™: 7.0.13, 7.2.10, 8.0.2007, 8.0.2006, 8.1.2008, 8.1.2009, 8.1.2011, 8.1.2012 (latest FedRAMP release), 8.1.2101, 8.1.2103, 8.2.2104