I have an Event with no Splunk Metadata value within the events and i am trying to add new fields such as host, index,source and sourcetype . custom fields and i tried using an eval but no luck, how do i go about this ?
Enter your E-mail address. We'll send you an e-mail with instructions to reset your password.
