All Apps and Add-ons

Splunk App for Windows Infrastructure Searches Causing Searches Delayed Error

msevcik
Explorer

We recently upgraded to a newer version of Splunk App for Windows Infrastructure.  It seems to be generating an enormous amount of memory consuming scheduled searches called tSessions_Lookup_Update.  Any way to slow this down or remove it entirely?  We usually just use the LDAP searches anyway, so I don't know if disabling these would be that detrimental.

Labels (3)
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...