Getting Data In

Is there a way to see how much data we are getting in from Active Directory, Exchange and Radius (size of the indexes/number of days the data goes back)?

dkr3500
Path Finder

Is there a way to see how much data we are getting in from Active Directory, Exchange and Radius (size of the indexes/number of days the data goes back)?

Splunk version: 6.5.3
Enterprise distributed environment.

Tags (1)
0 Karma
1 Solution

jdhunter
Path Finder

Do you have all the data going to one index? Have you created a separate index for each? Have you setup the Monitoring Console for your deployment? If you haven't setup the Monitoring Console, I would set that up. There is a lot of valuable information about your Splunk Environment to be gained.

https://docs.splunk.com/Documentation/Splunk/7.1.2/DMC/DMCoverview

If you have the Monitoring Console Setup, Navigate to Monitoring Console > Indexing > Indexes and Volumes > Index Detail: Deployment > Filter on the Index of Interest.

This dashboard gives you an Overview of your data for that Index including Size and Median Data age.

View solution in original post

0 Karma

jdhunter
Path Finder

Do you have all the data going to one index? Have you created a separate index for each? Have you setup the Monitoring Console for your deployment? If you haven't setup the Monitoring Console, I would set that up. There is a lot of valuable information about your Splunk Environment to be gained.

https://docs.splunk.com/Documentation/Splunk/7.1.2/DMC/DMCoverview

If you have the Monitoring Console Setup, Navigate to Monitoring Console > Indexing > Indexes and Volumes > Index Detail: Deployment > Filter on the Index of Interest.

This dashboard gives you an Overview of your data for that Index including Size and Median Data age.

0 Karma

adonio
Ultra Champion
0 Karma
Get Updates on the Splunk Community!

.conf25 Community Recap

Hello Splunkers, And just like that, .conf25 is in the books! What an incredible few days — full of learning, ...

Splunk App Developers | .conf25 Recap & What’s Next

If you stopped by the Builder Bar at .conf25 this year, thank you! The retro tech beer garden vibes were ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...