Deployment Architecture

how to store logs in different indexes

rupesh212121
Explorer

hi my question is how i can store my logs/data on different indexes. please explain the whole process in detail?????

Tags (1)
0 Karma

Ayn
Legend

I think the best here is for you to make sure you understand the process so that you can start storing data in different indexes with confidence, rather than just following a ready-made guide without getting the background knowledge you need to understand what you're doing. The best option IMHO is to read the manual that covers the answer to this question in detail:

http://www.splunk.com/base/Documentation/latest/admin/Setupmultipleindexes

Get Updates on the Splunk Community!

What the End of Support for Splunk Add-on Builder Means for You

Hello Splunk Community! We want to share an important update regarding the future of the Splunk Add-on Builder ...

Solve, Learn, Repeat: New Puzzle Channel Now Live

Welcome to the Splunk Puzzle PlaygroundIf you are anything like me, you love to solve problems, and what ...

Building Reliable Asset and Identity Frameworks in Splunk ES

 Accurate asset and identity resolution is the backbone of security operations. Without it, alerts are ...