Getting Data In

federated search in splunk

vk1109
New Member

What is the difference between standard and transparent federated search type in splunk with examples or usecase?

Labels (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Standard  mode requires changes to your searches whereas transparent mode uses existing searches without changes.   Transparent mode is recommended for those migrating from Hybrid Search. See https://docs.splunk.com/Documentation/Splunk/9.0.3/Search/Aboutfederatedsearch#About_standard_and_tr...

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

Get Inspired! We’ve Got Validation that Your Hard Work is Paying Off

We love our Splunk Community and want you to feel inspired by all your hard work! Eric Fusilero, our VP of ...