Getting Data In

Splunk Cloud not getting info from indexes on HFs

xtinas
Engager

I'm trying to centralize our app information on our HFs. Each HF has the following scheduled search set up:

| rest /services/apps/local
| search disabled=0
| table splunk_server label title version update.version check_for_updates
| collect index="meta_apps"

The index "meta_apps" exists on the HF and on Splunk Cloud. However, I don't see these results in Splunk Cloud.

What am I missing?

Labels (2)
0 Karma
Get Updates on the Splunk Community!

Detecting Remote Code Executions With the Splunk Threat Research Team

WATCH NOWRemote code execution (RCE) vulnerabilities pose a significant risk to organizations. If exploited, ...

Enter the Splunk Community Dashboard Challenge for Your Chance to Win!

The Splunk Community Dashboard Challenge is underway! This is your chance to showcase your skills in creating ...

.conf24 | Session Scheduler is Live!!

.conf24 is happening June 11 - 14 in Las Vegas, and we are thrilled to announce that the conference catalog ...