Getting Data In

Deleting data inputs

sruthy
Explorer

Hi,
I am new to splunk and when i add datainputs i was not known about the timestamp issue and later i explored it. when i am trying to delete a data input and trying to reinsert it with proper format, i found that the earlier input is still indexed and when i am querying it , i am able to find it. i tried restarting splunk through splunk manager as well as windows services.(both splunkd and splunkweb)

Tags (1)
1 Solution

MHibbin
Influencer

Hi,

Welcome to the world of Splunk...

Without re-writing what has already been written... the following documentation would be helpful here.

http://docs.splunk.com/Documentation/Splunk/5.0/Indexer/RemovedatafromSplunk

View solution in original post

MHibbin
Influencer

Hi,

Welcome to the world of Splunk...

Without re-writing what has already been written... the following documentation would be helpful here.

http://docs.splunk.com/Documentation/Splunk/5.0/Indexer/RemovedatafromSplunk

Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...