Getting Data In

Another Newbee Question...Searching Indexed Data

Rayj00
New Member

Totally new with Splunk. Have mercy on my soul! 🙂

I am trying to set up Splunk on my laptop as I am awaiting licensing issues to resolve for the Splunk Server we will be using.

I simply want to index and search my laptop (Window 7) event logs with Splunk, sort of a learning task for me. I am seeing about 25,000 event count in my_laptop index. On the search page I don't see any Fields listed. Actually nothing is listed. I did a "search=my_laptop" in the search field which I thought would list everything but I get nothing?

What am I missing?

Thanks,

Ray

Tags (1)
0 Karma

ftk
Motivator

By default the search app searches the main index only. Try the following search:

index=my_laptop

This will search for all events (implied *) in the my_laptop index.

Rayj00
New Member

Thanks for that tip.

0 Karma
Get Updates on the Splunk Community!

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...