Which knowledge Object does the Splunk Common Information Model (CIM) use to normalize dat
a. in addition to field aliases, event types, and tags?
Normalize your data for each of these fields using a combination of field aliases, field extractions, and lookups.
https://docs.splunk.com/Documentation/CIM/4.15.0/User/UsetheCIMtonormalizedataatsearchtime
Dahlia
4 months agoHuey
4 months agoDaniel
4 months agoUlysses
4 months agoSusana
4 months agoDeeanna
5 months agoViva
5 months agoYun
5 months agoTomas
5 months agoLindsey
5 months agoToi
5 months ago