Reporting

View all host

chigueral
Explorer

How can I view all host (wintel or unix)....

Regards

Tags (2)
0 Karma

martin_mueller
SplunkTrust
SplunkTrust

You're better off running this:

| metadata type=hosts index=*

Will run over all time in no time.

chigueral
Explorer

Thanks a lot....

0 Karma

chandrasekhar4u
Engager

I downvoted this post because it's not an answer

0 Karma

jstockamp
Communicator

if you want to know all the hosts you have index data for do a search

index = "*" | stats count by host

Depending on the size of your indexes this query may take a long time to run.

0 Karma

arimaldo
Explorer

I am seeing INFO in the list of hosts but I don't see where that is coming from. What does it mean and where is it coming from?

0 Karma

arimaldo
Explorer

I found the source and it's coming from the /var/log/rhsm/rhsmcertd.log file. Can I just "blacklist" this entry "INFO" to keep it from showing up in the searches? Are there any drawbacks to do this - e.g. missing log files?

0 Karma
Get Updates on the Splunk Community!

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...