Getting Data In

Why is uploaded data missing?

suvi1611
New Member

Hi,

I am new to splunk and trying to upload data for practising. I amd using the data from the the below link.

https://docs.splunk.com/Documentation/Splunk/9.0.5/SearchTutorial/GetthetutorialdataintoSplunk

When I try to upload the tutorialdata.zip, It loads for a long time and I get a read timeout

When I extract the tutorialdata.zip and upload a single log file . No issues in uploading, It uploads the logs file and when I click Next --> Set Source Type is empty and not displaying the raw data (as shown in the screenshot) and If I continue till the end, submit and  search for the index/source, I get 0 events found.

Could you please suggest If I am missing anything. I am currently using a free license option. 

 

suvi1611_0-1687181697433.png

suvi1611_1-1687181798323.png

 

 

Labels (1)
0 Karma

suvi1611
New Member

Thank you for the quick update. I just tried in Splunk cloud with the same zip file and it was working as expected.

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

at least earlier this has worked exactly how the manual told. If it didn’t work, then you should try to use trial or full enterprise version, not a free version. The free version has some limitations which shouldn’t affect for this test, but it’s the difference for working environment.

r. Ismo

0 Karma
Get Updates on the Splunk Community!

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...