All Apps and Add-ons

What is the thought process behind having 4 separate indexes for the Splunk App for Jenkins?

davebo1896
Communicator

Can I combine the jenkins data into one index? Why do I have to maintain four new indexes for one app?

0 Karma

Richfez
SplunkTrust
SplunkTrust

There are various reasons for multiple indexes. The top few paragraphs in the docs on creating custom indexes are an easy but useful read on they why. I don't know in this particular case why there would be four indexes, but in other apps I've found the primary reasons are for control of retention or permissions. For instance, the configuration changes your firewall is reporting in may need both a different retention and also a different set of people reviewing them than the actual traffic your firewall is reporting needs.

davebo1896
Communicator

Nevermind, I see the index names are hardcoded all over the app.

0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...