| I run the following search on the search head and receive results that I expect: index=c_metrics Severity!="Very Low... by manderson7 Contributor in Deployment Architecture 02-01-2017 0 6 | 0 | 6 | ||
| What conf file controls the below message? I noticed the following warning message after upgrading my deployment ser... by archspangler Path Finder in Deployment Architecture 02-01-2017 1 14 | 1 | 14 | ||
| Having a heck of a time implementing an application. (In this case the app=dnslookup). Here is my command and error ... by shandman Path Finder in Deployment Architecture 01-31-2017 1 6 | 1 | 6 | ||
| Does anyone know if this holds valid in RHEL 7.2: Recently I saw an article regarding Splunk performance and Transpa... by Jrubalcaba Explorer in Deployment Architecture 01-31-2017 0 8 | 0 | 8 | ||
| I am trying to change the default time range when opening the search app. I have found several answers in other quest... by mdsnmss SplunkTrust 0 2 | 0 | 2 | ||
| Does anybody happen to know what the following error means and how to resolve it? I linked this back to a saved sear... by kbecker Communicator in Deployment Architecture 01-31-2017 5 7 | 5 | 7 | ||
| Hi Ninjas I have two different json logs which looks like this: {"version":"1.1","host":"t800.skynet.com","short_me... by salem34 Path Finder in Deployment Architecture 01-30-2017 0 14 | 0 | 14 | ||
| I am trying to get additional logs sent to Splunk Cloud from a Windows domain controller. I modified my inputs.conf ... by bbazian New Member in Deployment Architecture 01-30-2017 0 8 | 0 | 8 | ||
| Our Splunk server is in UTC time zone,but the Events time zone is in CET. Current Splunk Server Time:- Fri Jan 27 12... by biec1 Explorer in Deployment Architecture 01-28-2017 0 4 | 0 | 4 | ||
| I'm trying to keep the server.conf in a consistent state over a few clustered indexes, but I'm having a bit of troubl... by kdoonan Explorer in Deployment Architecture 01-27-2017 1 6 | 1 | 6 | ||
| I am trying to list out common uid on two different hosts. I am using this but this give a visual of all uids includi... by nikkuu New Member in Deployment Architecture 01-27-2017 0 2 | 0 | 2 | ||
| I'm not sure what I'm doing wrong here, but trying to configure a universal forwarder on Windows so it automatically ... by MikeFarmITP New Member in Deployment Architecture 01-27-2017 0 2 | 0 | 2 | ||
| Hi. I am just confused a bit with raw and indexed/indexing data being stored by the index. So does the index store bo... by aoliullah Path Finder in Deployment Architecture 01-27-2017 0 2 | 0 | 2 | ||
| Hi folks, I have been searching for ways to back up my Splunk 6.4.1 which is on CentOS and got these results: http:/... by netprince New Member in Deployment Architecture 01-26-2017 0 5 | 0 | 5 | ||
| Hello, After several trial and error, I can not sort out the issue for additional Indexes creation for cluster peers... by princemanto2580 Path Finder in Deployment Architecture 01-26-2017 0 4 | 0 | 4 | ||
| Hi. Could someone explain to me the difference between Distributed and Clustered environment in relation to Splunk? I... by aoliullah Path Finder in Deployment Architecture 01-26-2017 0 3 | 0 | 3 | ||
| Indexer is filled up , i have got the retention policy accoridngly by Koushik_Katta Explorer in Deployment Architecture 01-25-2017 0 3 | 0 | 3 | ||
| Hello Splunker, I prepared one lab with below instance to see real-time Single Site Index Clustering. But after conf... by princemanto2580 Path Finder in Deployment Architecture 01-24-2017 0 15 | 0 | 15 | ||
| I have six indexers in cluster and 2 search heads. Only one of my indexers is showing >90% CPU load in some other ser... by MousumiChowdhur Contributor in Deployment Architecture 01-24-2017 0 4 | 0 | 4 | ||
| We want to build a search head cluster. May I know which storage is preferable: SAN or local drive? And why? by ankithreddy777 Contributor in Deployment Architecture 01-23-2017 0 3 | 0 | 3 | ||
| Hi, I am unable to remove search peers from the Distributed Management Console. When I try to remove it from Splunk W... by saurabh009 Path Finder in Deployment Architecture 01-23-2017 1 2 | 1 | 2 | ||
| I have Cluster Master with Two indexes. The Clustering Master Node screen is showing only index _audit and _interna... by sat94541 Communicator in Deployment Architecture 01-23-2017 0 2 | 0 | 2 | ||
| I had just setup Splunk with indexer clustering (RF-3, SF-2) with no data and initially loaded 1TB of syslog file usi... by srajarat2 Path Finder in Deployment Architecture 01-22-2017 0 3 | 0 | 3 | ||
| After setting repFactor = 2 at the default level and running with that for awhile, can I now go in on a per indexer b... by jwalthour Communicator in Deployment Architecture 01-22-2017 0 3 | 0 | 3 | ||
| Hi All, Is it possible to clear entire dispatch directory, as one of the search peer Splunk instance has reached maxi... by Hemnaath Motivator in Deployment Architecture 01-22-2017 1 3 | 1 | 3 |