<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Steby by Step Guide to use and build 'Summary Index' in Splunk Enterprise Security</title>
    <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/Steby-by-Step-Guide-to-use-and-build-Summary-Index/m-p/564283#M10220</link>
    <description>&lt;P&gt;Hey Rich,&lt;/P&gt;&lt;P&gt;Had been very busy all this while.&amp;nbsp; I am trying this link today but it gives me '404 Not found'&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://aditumpartners.com/what-is-summary-indexing/" target="_blank"&gt;https://aditumpartners.com/what-is-summary-indexing/&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;May I request you to help me with an alternate link please&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;NIshant&lt;/P&gt;</description>
    <pubDate>Mon, 23 Aug 2021 08:18:53 GMT</pubDate>
    <dc:creator>beriwalnishant</dc:creator>
    <dc:date>2021-08-23T08:18:53Z</dc:date>
    <item>
      <title>Steby by Step Guide to use and build 'Summary Index'</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/Steby-by-Step-Guide-to-use-and-build-Summary-Index/m-p/544465#M9799</link>
      <description>&lt;P&gt;Hello You all talented people out there,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;May I request someone to please help me with a reference link or a video that explains well on usage and setting up Splunk Summary Indexes.&lt;/P&gt;&lt;P&gt;I tried finding but I don't find a very good detailed or properly explained reference anywhere.&lt;/P&gt;&lt;P&gt;I have 4 dashboards that I built which doesn't take a lot of data but using summary index we will be able to faster load it and less load on the server&lt;/P&gt;&lt;P&gt;Will I need to make changes to the queries used in the dashboard using it ?&amp;nbsp; does it use your computer's hard disk when create a dedicated index, do we need to change the 'Index' details in our query with the one we will create for SI purpose...etc&amp;nbsp; lot of questions better if I can get a step by step guide.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks in advance&lt;/P&gt;&lt;P&gt;Nishant&lt;/P&gt;</description>
      <pubDate>Fri, 19 Mar 2021 09:16:41 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise-Security/Steby-by-Step-Guide-to-use-and-build-Summary-Index/m-p/544465#M9799</guid>
      <dc:creator>beriwalnishant</dc:creator>
      <dc:date>2021-03-19T09:16:41Z</dc:date>
    </item>
    <item>
      <title>Re: Steby by Step Guide to use and build 'Summary Index'</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/Steby-by-Step-Guide-to-use-and-build-Summary-Index/m-p/544495#M9800</link>
      <description>&lt;P&gt;A summary index is no different from any other event index so you create and use SIs the same way you would any other event index.&amp;nbsp; The user's hard disk (assuming there is one) is not used.&amp;nbsp; Yes, you will have to change your dashboards to read from the SI.&amp;nbsp; You also will need a scheduled search to populate/update the SI.&amp;nbsp; See&amp;nbsp;&lt;A href="https://docs.splunk.com/Documentation/Splunk/8.1.2/Knowledge/Setupsummaryindexes" target="_blank" rel="noopener"&gt;https://docs.splunk.com/Documentation/Splunk/8.1.2/Knowledge/Setupsummaryindexes &lt;/A&gt;and&amp;nbsp;&lt;A href="https://aditumpartners.com/what-is-summary-indexing/" target="_blank"&gt;https://aditumpartners.com/what-is-summary-indexing/&lt;/A&gt; for more information.&lt;/P&gt;</description>
      <pubDate>Fri, 19 Mar 2021 12:25:07 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise-Security/Steby-by-Step-Guide-to-use-and-build-Summary-Index/m-p/544495#M9800</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2021-03-19T12:25:07Z</dc:date>
    </item>
    <item>
      <title>Re: Steby by Step Guide to use and build 'Summary Index'</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/Steby-by-Step-Guide-to-use-and-build-Summary-Index/m-p/545017#M9810</link>
      <description>&lt;P&gt;Thanks, let me check and get back to you here if I have further questions, I feel hard time understanding 'splunk doc' pages so was more looking towards an easy guide or steps but let me give it a try again.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Nishant&lt;/P&gt;</description>
      <pubDate>Wed, 24 Mar 2021 00:49:54 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise-Security/Steby-by-Step-Guide-to-use-and-build-Summary-Index/m-p/545017#M9810</guid>
      <dc:creator>beriwalnishant</dc:creator>
      <dc:date>2021-03-24T00:49:54Z</dc:date>
    </item>
    <item>
      <title>Re: Steby by Step Guide to use and build 'Summary Index'</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/Steby-by-Step-Guide-to-use-and-build-Summary-Index/m-p/545118#M9811</link>
      <description>&lt;P&gt;Any time you have difficulty understanding a Splunk docs page be sure to submit feedback on that page.&amp;nbsp; The Docs team is very good about updating the documentation in response to user feedback.&lt;/P&gt;</description>
      <pubDate>Wed, 24 Mar 2021 12:39:56 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise-Security/Steby-by-Step-Guide-to-use-and-build-Summary-Index/m-p/545118#M9811</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2021-03-24T12:39:56Z</dc:date>
    </item>
    <item>
      <title>Re: Steby by Step Guide to use and build 'Summary Index'</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/Steby-by-Step-Guide-to-use-and-build-Summary-Index/m-p/545152#M9813</link>
      <description>&lt;P class="lia-align-justify"&gt;Understood thanks for advising.&lt;/P&gt;</description>
      <pubDate>Wed, 24 Mar 2021 14:24:17 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise-Security/Steby-by-Step-Guide-to-use-and-build-Summary-Index/m-p/545152#M9813</guid>
      <dc:creator>beriwalnishant</dc:creator>
      <dc:date>2021-03-24T14:24:17Z</dc:date>
    </item>
    <item>
      <title>Re: Steby by Step Guide to use and build 'Summary Index'</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/Steby-by-Step-Guide-to-use-and-build-Summary-Index/m-p/564283#M10220</link>
      <description>&lt;P&gt;Hey Rich,&lt;/P&gt;&lt;P&gt;Had been very busy all this while.&amp;nbsp; I am trying this link today but it gives me '404 Not found'&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;A href="https://aditumpartners.com/what-is-summary-indexing/" target="_blank"&gt;https://aditumpartners.com/what-is-summary-indexing/&lt;/A&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;May I request you to help me with an alternate link please&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;NIshant&lt;/P&gt;</description>
      <pubDate>Mon, 23 Aug 2021 08:18:53 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise-Security/Steby-by-Step-Guide-to-use-and-build-Summary-Index/m-p/564283#M10220</guid>
      <dc:creator>beriwalnishant</dc:creator>
      <dc:date>2021-08-23T08:18:53Z</dc:date>
    </item>
    <item>
      <title>Re: Steby by Step Guide to use and build 'Summary Index'</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/Steby-by-Step-Guide-to-use-and-build-Summary-Index/m-p/564318#M10221</link>
      <description>&lt;P&gt;The 404 page on that site has a search box which makes finding pages trivial.&amp;nbsp; Try&amp;nbsp;&lt;A href="https://www.sp6.io/blog/what-is-summary-indexing/" target="_blank"&gt;https://www.sp6.io/blog/what-is-summary-indexing/&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 23 Aug 2021 12:40:24 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise-Security/Steby-by-Step-Guide-to-use-and-build-Summary-Index/m-p/564318#M10221</guid>
      <dc:creator>richgalloway</dc:creator>
      <dc:date>2021-08-23T12:40:24Z</dc:date>
    </item>
    <item>
      <title>Re: Steby by Step Guide to use and build 'Summary Index'</title>
      <link>https://community.splunk.com/t5/Splunk-Enterprise-Security/Steby-by-Step-Guide-to-use-and-build-Summary-Index/m-p/564329#M10222</link>
      <description>&lt;P&gt;Super thanks a lot&lt;/P&gt;</description>
      <pubDate>Mon, 23 Aug 2021 13:11:08 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Enterprise-Security/Steby-by-Step-Guide-to-use-and-build-Summary-Index/m-p/564329#M10222</guid>
      <dc:creator>beriwalnishant</dc:creator>
      <dc:date>2021-08-23T13:11:08Z</dc:date>
    </item>
  </channel>
</rss>

