I am using Splunk to collect data from the security logs on my network. How long does Splunk store the data that it collects?
Is there an easy way to archive the data and be able to review it later if necessary?
http://docs.splunk.com/Documentation/Splunk/5.0/Indexer/Backupindexeddata
View solution in original post
Thanks
/10 thanks