Splunk Enterprise

How to differentiate between productive and non-productive environment logs?




I want to know how to differentiate between logs from a productive versus a non-productive license.


Thnk you 



Labels (1)
Tags (1)
0 Karma



Could you please provide some more details if your focus is more about how to write a splunk search to differ between different stages/environments or licensing in general?

Regarding licensing license pools may be helpful in your case Create or edit a license pool - Splunk Documentation

0 Karma


I know my question is very general, but yes I will like to know,  how I can know if the logs come from different environments.  and know which one. 

0 Karma
Get Updates on the Splunk Community!

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

Using the Splunk Threat Research Team’s Latest Security Content

REGISTER HERE Tech Talk | Security Edition Did you know the Splunk Threat Research Team regularly releases ...

SplunkTrust | 2024 SplunkTrust Application Period is Open!

It's that time again, folks! That's right, the application/nomination period for the 2024 SplunkTrust is ...