<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cannot see data that gets indexed on Summary page in Splunk Search</title>
    <link>https://community.splunk.com/t5/Splunk-Search/Cannot-see-data-that-gets-indexed-on-Summary-page/m-p/49954#M12001</link>
    <description>&lt;P&gt;would a .conf file need to be changed or a setting w/in the app?&lt;/P&gt;</description>
    <pubDate>Fri, 11 May 2012 14:35:16 GMT</pubDate>
    <dc:creator>efelder0</dc:creator>
    <dc:date>2012-05-11T14:35:16Z</dc:date>
    <item>
      <title>Cannot see data that gets indexed on Summary page</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Cannot-see-data-that-gets-indexed-on-Summary-page/m-p/49952#M11999</link>
      <description>&lt;P&gt;Recently, I have made changes to my Splunk environment where I created new indexes and assigned multiple data sources to their respective indexes. However, once I index a single data source, that information no longer shows up on the Summary page. i.e. the message, "Waiting for data" appears in the Sources window.&lt;/P&gt;

&lt;P&gt;Thoughts?&lt;/P&gt;</description>
      <pubDate>Fri, 11 May 2012 14:21:57 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Cannot-see-data-that-gets-indexed-on-Summary-page/m-p/49952#M11999</guid>
      <dc:creator>efelder0</dc:creator>
      <dc:date>2012-05-11T14:21:57Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot see data that gets indexed on Summary page</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Cannot-see-data-that-gets-indexed-on-Summary-page/m-p/49953#M12000</link>
      <description>&lt;P&gt;The default view for the Search app summary page is only going to show data from the main index.  If you want to see other sources you'll need to add that index as a default for the role of the user you are logging in as.  Then you'll see the sources by default instead of having to type in index="whatever". &lt;/P&gt;</description>
      <pubDate>Fri, 11 May 2012 14:30:42 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Cannot-see-data-that-gets-indexed-on-Summary-page/m-p/49953#M12000</guid>
      <dc:creator>sdaniels</dc:creator>
      <dc:date>2012-05-11T14:30:42Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot see data that gets indexed on Summary page</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Cannot-see-data-that-gets-indexed-on-Summary-page/m-p/49954#M12001</link>
      <description>&lt;P&gt;would a .conf file need to be changed or a setting w/in the app?&lt;/P&gt;</description>
      <pubDate>Fri, 11 May 2012 14:35:16 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Cannot-see-data-that-gets-indexed-on-Summary-page/m-p/49954#M12001</guid>
      <dc:creator>efelder0</dc:creator>
      <dc:date>2012-05-11T14:35:16Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot see data that gets indexed on Summary page</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Cannot-see-data-that-gets-indexed-on-Summary-page/m-p/49955#M12002</link>
      <description>&lt;P&gt;You can do either but throught the app is probably easiest.  Look up the user to see what role they have.  Then Manager -&amp;gt; Access Controls -&amp;gt; Roles.  Then you'll see a box for 'Indexes searched by default'.  Remember this change will apply to all users of that Role.&lt;/P&gt;</description>
      <pubDate>Fri, 11 May 2012 14:38:43 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Cannot-see-data-that-gets-indexed-on-Summary-page/m-p/49955#M12002</guid>
      <dc:creator>sdaniels</dc:creator>
      <dc:date>2012-05-11T14:38:43Z</dc:date>
    </item>
    <item>
      <title>Re: Cannot see data that gets indexed on Summary page</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Cannot-see-data-that-gets-indexed-on-Summary-page/m-p/49956#M12003</link>
      <description>&lt;P&gt;I got it, Splunk --&amp;gt; Manager --&amp;gt; Access Controls --&amp;gt; Admin&lt;/P&gt;</description>
      <pubDate>Fri, 11 May 2012 14:42:05 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Cannot-see-data-that-gets-indexed-on-Summary-page/m-p/49956#M12003</guid>
      <dc:creator>efelder0</dc:creator>
      <dc:date>2012-05-11T14:42:05Z</dc:date>
    </item>
  </channel>
</rss>

