Modify Raw Events to Remove Fields and Reduce Storage
This video shows you how to remove unwanted fields from a raw event and reconstruct it with a reduced number of fields to optimize storage in the Splunk platform.
Related Videos
Splunk Federated Data Management - Process, Route and Search Cisco ASA logs
Troubleshoot microservice-based apps faster with Splunk Observability Cloud
Experience the Power of Data for Fighting Fraud with Splunk and AWS