Splunk Enterprise

Unable to see logs on search head?

sonishar
Explorer

Hello Team

i am using syslog for logs ingestion of solaris servers.
I can see results for tcpdump host solarisServer.

but logs are not visible on search head

Labels (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

Please tell us more about how the syslog data gets from the Solaris servers to Splunk.

How are you trying to search for the logs?  What query are you using?  Are you sure you have the index correct?  Have you tried different time ranges (Including the future)?

---
If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Developer Spotlight with Paul Stout

Welcome to our very first developer spotlight release series where we'll feature some awesome Splunk ...

State of Splunk Careers 2024: Maximizing Career Outcomes and the Continued Value of ...

For the past four years, Splunk has partnered with Enterprise Strategy Group to conduct a survey that gauges ...

Data-Driven Success: Splunk & Financial Services

Splunk streamlines the process of extracting insights from large volumes of data. In this fast-paced world, ...