rename operator - Search Language Test (oxiclean)
- search test: rename operator through the UI.
comment splunk> start with '/'
open / (open the main interface)
comment Wait for server response 'completed'
waitForDispatchCompleted 5000
comment Change time line to 'All Time'
select //select[@id='timelineValues'] value=ALL_TIME
comment Clear search and hit report tab
type //textarea[@id='entry']
click //input[@id='entrySubmit'] (Click submit button)
comment Wait for server response 'completed'
waitForDispatchCompleted 10000
comment **** Rename: apache clientip Case ****
type //textarea[@id='entry'] index::sampledata sourcetype::access_combined * | rename clientip as ClientIPAddress | top ClientIPAddress
click //input[@id='entrySubmit'] (Click submit button)
comment Wait for server response 'completed'
waitForDispatchCompleted 50000
comment Validate columns processor, count, percent
verifyText //div[@id='innerSearchWrapper']//span[@id='reportTitleContainer'] *ClientIPAddress*
verifyText //table[@id='reportTable']//th[@id='rpc1']//a[@class='reportColumnLabel'] *ClientIPAddress*
pause 5000
comment Clear search and hit report tab
type //textarea[@id='entry']
click //input[@id='entrySubmit'] (Click submit button)
comment Wait for server response 'completed'
waitForDispatchCompleted 8000
comment **** Rename failure; simple case, invalid args ****
type //textarea[@id='entry'] index::_internal | rename rename
click //input[@id='entrySubmit'] (Click submit button)
comment Expect and validate error notification due to missing args
waitForText //div[@id='msgNotificationContainer']//td[@class='ERROR'] Error*
verifyText //div[@id='msgNotificationContainer']//td[@class='ERROR'] *Error in*