Modify Raw Events to Remove Fields and Reduce Storage
This video shows you how to remove unwanted fields from a raw event and reconstruct it with a reduced number of fields to optimize storage in the Splunk platform.
Related Videos
Service Visibility with IT Service Intelligence (ITSI)
Filter Kubernetes Data over HTTP Event Collector (HEC)
Using Pipeline Code Editor to Filter, Enrich, and Route Data