Getting Data In

How to index data ?

jigneshjsoni71
New Member

In Splunk, I am running a query in search bar and its returning results.

In reply to one of the question , I was replied "You need to index data first"

How can I index data ?
Thanks

Tags (1)
0 Karma

ppablo
Retired

Hi @jigneshjsoni71

Are you looking for the "Getting Data In" manual in Splunk documentation?

http://docs.splunk.com/Documentation/Splunk/6.1.3/Data/WhatSplunkcanmonitor

0 Karma

ppablo
Retired

Hi @jigneshjsoni71

I just read through the previous questions you posted and you definitely need to go through the Search Tutorial before jumping into anything else at this point. Since no one on your team knows anything about Splunk, they are just going to have to wait until you get caught up to speed starting from the basics. Splunk is an awesome tool to use in any organization that deals with machine data, but it's not just some simple platform to master over night. There are great folks here that can help you (and want to help you), but you have to use the recommended resources first.

aweitzman
Motivator

Yes, having data in Splunk is the same thing as Splunk indexing the data. Two ways of saying the same thing.

Please read the documentation links listed above. While the Add Data button (which should be on the Settings/Data Inputs page) is one way of getting data into Splunk (also known as having Splunk index your data), there are many others.

0 Karma

jigneshjsoni71
New Member

Yes, this is first time I am working on Splunk

I am trying to understand, how can I index data.
Does not indexing of data happen by itself ? When I am running a query in search bar of Splunk, I am getting results. If data was indexed, would the results be any different ? How can I index data ?
When I go on Splunk web, I dont get "Add Data" link. Does it mean that Splunk UI is customized and "Add data" link is taken out ? If thats the case, how does data get indexed ?
Thanks

0 Karma

ppablo
Retired

If this is your first time installing and running Splunk, I'd highly recommend going through the Search Tutorial first.

http://docs.splunk.com/Documentation/Splunk/6.1.3/SearchTutorial/WelcometotheSearchTutorial

There is tutorial data available for download in this documentation to help get you familiarized as well.

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Take Action Automatically on Splunk Alerts with Red Hat Ansible Automation Platform

 Are you ready to revolutionize your IT operations? As digital transformation accelerates, the demand for ...

Calling All Security Pros: Ready to Race Through Boston?

Hey Splunkers, .conf25 is heading to Boston and we’re kicking things off with something bold, competitive, and ...

Beyond Detection: How Splunk and Cisco Integrated Security Platforms Transform ...

Financial services organizations face an impossible equation: maintain 99.9% uptime for mission-critical ...