Knowledge Management

Does someone have a practical example on using the collect command?

renanprado96
Path Finder

I read the doc about the collect command. I understand how it works and what it does, but I wanted some practical example.

Because it is something that uses an index, so I'm afraid to touch it.

Thanks!

0 Karma

Richfez
SplunkTrust
SplunkTrust

There was a session at 2013 .conf session that you can download from Splunk titled

Automating Operational Intelligence: Stats and Summary Indexes

It was by the brilliant and dapper Jesse Trucks. It might give you some really good ideas.

To find it, search in the .conf 2013 sessions for Jesse Trucks and download the Recording.

0 Karma

somesoni2
Revered Legend

My use-cases for collect command is for doing One time summary indexing (save result of search result to an index) OR doing a backfill of a summary index if the backfill period is very small and continuous. This doesn't overwrite any existing data but use a test index to validate the result before using the actual index, to be sure.

renanprado96
Path Finder

Thank you!!!

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Observability Simplified: Combining User Experience, Application Performance & ...

Tech Talk Observability Simplified: Combining User Experience, Application Performance & Network ...

Event Series May & June: From Network Visibility to Service Intelligence

Unifying the Network: Moving from Alert Noise to Service Intelligence with Splunk ITSI In today’s hybrid ...