Hi,
I'm searching for the documentation for the new 6.5 hadoop data roll feature, and unable to find it. Can someone point me to it? Or where it's setup within Splunk? Nothing obvious stands out.
About archiving indexes with Hadoop Data Roll
http://docs.splunk.com/Documentation/Splunk/6.5.0/Indexer/ArchivingindexestoHadoop