Splunk Enterprise

Can you nullQueue metrics indexes?

jspigler2010
Explorer

Hoping this is going to be a relatively simple one.

Can you nullQueue metrics indexes?  For example, if I am using the  new *nix TA, all performance monitoring is collected with scheduled scripts and stored in metrics indexes.  Can we nullQueue a specific sourceType at the indexer like we would an event index?

 

Thanks!

Labels (3)
0 Karma

jspigler2010
Explorer

Anybody?

0 Karma
Get Updates on the Splunk Community!

Infographic provides the TL;DR for the 2024 Splunk Career Impact Report

We’ve been buzzing with excitement about the recent validation of Splunk Education! The 2024 Splunk Career ...

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...