All Apps and Add-ons

collected data volumes

gfgkemp
New Member

How do i know the amount of data being collected and where is the database stored?

Tags (1)
0 Karma

Genti
Splunk Employee
Splunk Employee

In SplunkWeb, splunk User interface that is, if you go to:

Manager » Indexes

You should be able to see the info you want, per index. It shows the name of the index, its max size, its current size, how many events, earliest and latest event to fall to the index, and lastly the directory path of where the database is for the particular index.

Cheers,
.gz

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Event Series: Level up your SOC: Advancing with Splunk Enterprise Security

AI has fundamentally raised the stakes for security operations, and this three-part series is your guide to ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...