Splunk Search

Fundamentals 1 module 4 data load does not return any data (events) when searched on

jmcclernon
New Member

I am taking the Fundaments 1 course loaded the module 4 data files and had the 239,625 events loaded as per the lab documentation.  However, in module 5 when attempting to query this data, nothing was returned.  I set the timeframe to all time and still 0 events are returned.  Any ideas?

Tags (1)
0 Karma

jmcclernon
New Member

I changed the timeframe from "all time" to previous month and everything is fine

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...