Splunk Search

Exporting views and searches.

smtnw666
Engager

Hello.

I have a set of advanced views, dashboards, searches, etc for the search app, which i have developed using my local splunk server. Now I want to move that into my clients production server. In other words I would like to be able to export them to another splunk installation. Pretty much like an app, but its not.

Since all the views, searches etc. are saved under the same user, I tried moving everything on the user's search app folder to the other server's user's search app folder, but the server still doesn't recognize the new dashboards, views etc.

Is this the way to go? What am I missing? Is there another way in which I can do this?

Any help would be appreciated.

Tags (4)
1 Solution

ChrisG
Splunk Employee
Splunk Employee

If you're looking to copy a user from one environment to another, this Answers thread might be useful: http://splunk-base.splunk.com/answers/3426/copy-users-from-one-server-to-the-other.

If you are looking at a more complex distributed deployment, I suggest reading up on the deployment server, starting here http://docs.splunk.com/Documentation/Splunk/5.0/Deploy/Aboutdeploymentserver and perhaps more particularly http://docs.splunk.com/Documentation/Splunk/5.0/Deploy/Updateconfigurations.

View solution in original post

ChrisG
Splunk Employee
Splunk Employee

If you're looking to copy a user from one environment to another, this Answers thread might be useful: http://splunk-base.splunk.com/answers/3426/copy-users-from-one-server-to-the-other.

If you are looking at a more complex distributed deployment, I suggest reading up on the deployment server, starting here http://docs.splunk.com/Documentation/Splunk/5.0/Deploy/Aboutdeploymentserver and perhaps more particularly http://docs.splunk.com/Documentation/Splunk/5.0/Deploy/Updateconfigurations.

Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...