Archive
Highlighted

splunk index is slow

Explorer

splunk index has around 1800 columns and i have data for two months. It is really slow when when perform a search. BTW this index is based on a input source created using Hadoop connect.

How do i measure the search performance? Is there any way i can improve my search performance?

Thanks for helping me on this, I am a newbie to splunk.

Thanks
Deepak

Tags (1)
0 Karma
Highlighted

Re: splunk index is slow

Path Finder

There is a really great Splunk app called S.O.S. http://apps.splunk.com/app/748/
It will give you a lot better drill down into your indexing and searching power that your environment can handle.

Highlighted

Re: splunk index is slow

SplunkTrust
SplunkTrust

Here's a start for improving search performance: http://wiki.splunk.com/Community:Intro_to_Splunk_Search_Performance

Highlighted

Re: splunk index is slow

Explorer

Thank you for your answers. I will look into this.

0 Karma