Splunk Search

Exporting views and searches.

smtnw666
Engager

Hello.

I have a set of advanced views, dashboards, searches, etc for the search app, which i have developed using my local splunk server. Now I want to move that into my clients production server. In other words I would like to be able to export them to another splunk installation. Pretty much like an app, but its not.

Since all the views, searches etc. are saved under the same user, I tried moving everything on the user's search app folder to the other server's user's search app folder, but the server still doesn't recognize the new dashboards, views etc.

Is this the way to go? What am I missing? Is there another way in which I can do this?

Any help would be appreciated.

Tags (4)
1 Solution

ChrisG
Splunk Employee
Splunk Employee

If you're looking to copy a user from one environment to another, this Answers thread might be useful: http://splunk-base.splunk.com/answers/3426/copy-users-from-one-server-to-the-other.

If you are looking at a more complex distributed deployment, I suggest reading up on the deployment server, starting here http://docs.splunk.com/Documentation/Splunk/5.0/Deploy/Aboutdeploymentserver and perhaps more particularly http://docs.splunk.com/Documentation/Splunk/5.0/Deploy/Updateconfigurations.

View solution in original post

ChrisG
Splunk Employee
Splunk Employee

If you're looking to copy a user from one environment to another, this Answers thread might be useful: http://splunk-base.splunk.com/answers/3426/copy-users-from-one-server-to-the-other.

If you are looking at a more complex distributed deployment, I suggest reading up on the deployment server, starting here http://docs.splunk.com/Documentation/Splunk/5.0/Deploy/Aboutdeploymentserver and perhaps more particularly http://docs.splunk.com/Documentation/Splunk/5.0/Deploy/Updateconfigurations.

Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...