Getting Data In

Why is uploaded data missing?

suvi1611
New Member

Hi,

I am new to splunk and trying to upload data for practising. I amd using the data from the the below link.

https://docs.splunk.com/Documentation/Splunk/9.0.5/SearchTutorial/GetthetutorialdataintoSplunk

When I try to upload the tutorialdata.zip, It loads for a long time and I get a read timeout

When I extract the tutorialdata.zip and upload a single log file . No issues in uploading, It uploads the logs file and when I click Next --> Set Source Type is empty and not displaying the raw data (as shown in the screenshot) and If I continue till the end, submit and  search for the index/source, I get 0 events found.

Could you please suggest If I am missing anything. I am currently using a free license option. 

 

suvi1611_0-1687181697433.png

suvi1611_1-1687181798323.png

 

 

Labels (1)
0 Karma

suvi1611
New Member

Thank you for the quick update. I just tried in Splunk cloud with the same zip file and it was working as expected.

0 Karma

isoutamo
SplunkTrust
SplunkTrust

Hi

at least earlier this has worked exactly how the manual told. If it didn’t work, then you should try to use trial or full enterprise version, not a free version. The free version has some limitations which shouldn’t affect for this test, but it’s the difference for working environment.

r. Ismo

0 Karma
Get Updates on the Splunk Community!

.conf25 Community Recap

Hello Splunkers, And just like that, .conf25 is in the books! What an incredible few days — full of learning, ...

Splunk App Developers | .conf25 Recap & What’s Next

If you stopped by the Builder Bar at .conf25 this year, thank you! The retro tech beer garden vibes were ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...