Getting Data In

Why am I unable to receive logs after a new index is configured in my environment?

Utkarsh_Singh
New Member

A new index is configured in our environment and all required settings are being made. But we are still not receiving logs on the indexer.
Please tell what action should i take.

0 Karma

mayurr98
Super Champion

hey @Utkarsh_Singh

have a look at this doc
http://docs.splunk.com/Documentation/Splunk/7.0.1/Troubleshooting/Cantfinddata

let me know if this helps!

0 Karma

Utkarsh_Singh
New Member

i have gone through but nothing found useful. Please tell the condition what we can possibly have in such cases

0 Karma

mayurr98
Super Champion

You have asked a very general question, you have to elaborate it as what all steps you have done to index logs? So that, we can help you with where you went wrong.

0 Karma
Get Updates on the Splunk Community!

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...