I am new to Splunk and am trying to learn via online tutorial.
I cannot get the provided csv file to upload correctly. Splunk said the upload was successful, but when I search I do not get any events. I have tried deleting cookies and cache, different browsers, incognito mode, and restarting splunk. I don't know what I am doing wrong. I have attachments for reference.
It's possible that the index you used to upload the file is not part of the "Searchable by default" index.
Add " index="your index" " to your search and try
Also you can edit the role of your user and add all indices as searchable by default