<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Splunk Fundamental Module 4 Lab in Getting Data In</title>
    <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-Fundamental-Module-4-Lab/m-p/560112#M92598</link>
    <description>&lt;P&gt;Ok, found an email address to &lt;EM&gt;Splunk Education&lt;/EM&gt; team (&lt;A href="mailto:elearn@splunk.com" target="_blank" rel="noopener"&gt;elearn@splunk.com&lt;/A&gt;) ...and submitted my question; here is the response:&lt;/P&gt;&lt;P&gt;"&lt;FONT color="#000080"&gt;Hello Ed,&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#000080"&gt;You may proceed to the next module/lab. The information indicating the number of events to indexed does not appear on this page in this &lt;EM&gt;version&lt;/EM&gt; of Splunk.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#000080"&gt;Mike Halladay&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#000080"&gt;IOD Technical Support Engineer&lt;/FONT&gt;"&lt;/P&gt;&lt;P&gt;I have since been able to perform a search &amp;amp; find data from these 3 lab files.&amp;nbsp; BTW, I'm running the &lt;STRONG&gt;Windows&lt;/STRONG&gt; version on my desktop.&lt;/P&gt;&lt;P&gt;Hope this helps somebody, I could have used this guidance last week.&lt;/P&gt;&lt;P&gt;Ed in Tampa&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Mon, 19 Jul 2021 19:40:21 GMT</pubDate>
    <dc:creator>etmaurer</dc:creator>
    <dc:date>2021-07-19T19:40:21Z</dc:date>
    <item>
      <title>Splunk Fundamental Module 4 Lab</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-Fundamental-Module-4-Lab/m-p/543503#M90742</link>
      <description>&lt;P&gt;After uploading the 3 files as per the instructions, I am supposed to see my events but there is nothing on the page even when I am logged in as admin or power user.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 12 Mar 2021 08:24:24 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-Fundamental-Module-4-Lab/m-p/543503#M90742</guid>
      <dc:creator>supyaetun</dc:creator>
      <dc:date>2021-03-12T08:24:24Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Fundamental Module 4 Lab</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-Fundamental-Module-4-Lab/m-p/543521#M90743</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;try to expand your timerange and if you don't specify the index name splunk automatically puts your data on the index=main.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 12 Mar 2021 11:37:34 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-Fundamental-Module-4-Lab/m-p/543521#M90743</guid>
      <dc:creator>aasabatini</dc:creator>
      <dc:date>2021-03-12T11:37:34Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Fundamental Module 4 Lab</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-Fundamental-Module-4-Lab/m-p/559856#M92572</link>
      <description>&lt;P&gt;Same here...uploaded 3 files into Splunk w/o issue but they don't appear as having been so as nothing to search upon.&amp;nbsp; Expanded data to "all time" as well.&lt;/P&gt;&lt;P&gt;Ed in Tampa&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 16 Jul 2021 18:00:54 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-Fundamental-Module-4-Lab/m-p/559856#M92572</guid>
      <dc:creator>etmaurer</dc:creator>
      <dc:date>2021-07-16T18:00:54Z</dc:date>
    </item>
    <item>
      <title>Re: Splunk Fundamental Module 4 Lab</title>
      <link>https://community.splunk.com/t5/Getting-Data-In/Splunk-Fundamental-Module-4-Lab/m-p/560112#M92598</link>
      <description>&lt;P&gt;Ok, found an email address to &lt;EM&gt;Splunk Education&lt;/EM&gt; team (&lt;A href="mailto:elearn@splunk.com" target="_blank" rel="noopener"&gt;elearn@splunk.com&lt;/A&gt;) ...and submitted my question; here is the response:&lt;/P&gt;&lt;P&gt;"&lt;FONT color="#000080"&gt;Hello Ed,&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#000080"&gt;You may proceed to the next module/lab. The information indicating the number of events to indexed does not appear on this page in this &lt;EM&gt;version&lt;/EM&gt; of Splunk.&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#000080"&gt;Mike Halladay&lt;/FONT&gt;&lt;/P&gt;&lt;P&gt;&lt;FONT color="#000080"&gt;IOD Technical Support Engineer&lt;/FONT&gt;"&lt;/P&gt;&lt;P&gt;I have since been able to perform a search &amp;amp; find data from these 3 lab files.&amp;nbsp; BTW, I'm running the &lt;STRONG&gt;Windows&lt;/STRONG&gt; version on my desktop.&lt;/P&gt;&lt;P&gt;Hope this helps somebody, I could have used this guidance last week.&lt;/P&gt;&lt;P&gt;Ed in Tampa&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 19 Jul 2021 19:40:21 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Getting-Data-In/Splunk-Fundamental-Module-4-Lab/m-p/560112#M92598</guid>
      <dc:creator>etmaurer</dc:creator>
      <dc:date>2021-07-19T19:40:21Z</dc:date>
    </item>
  </channel>
</rss>

