Splunk Search

How do i create a search such that i'll be able to know how many bytes have passed through daily

sarahh
Engager

Hi, i would like to ask if im able to create a search such that i'll be able to show it in my dashboard on how many bytes have passed through each day. the data i'm using is the one that they gave from the Splunk tutorial. Please help!!

Tags (3)
0 Karma
1 Solution

kristian_kolb
Ultra Champion

If you install the Splunk Deployment Monitor, you will get these metrics in a couple of dashboards. Oh, and I believe that you have similar functionality under Status -> Index/Indexing Overview in the Search app. Sorry, I don't remember the exact name of the menu option, no splunk in front of me right now.

Since these views are built on saved searches, you can study them for educational purposes.

/K

View solution in original post

kristian_kolb
Ultra Champion

If you install the Splunk Deployment Monitor, you will get these metrics in a couple of dashboards. Oh, and I believe that you have similar functionality under Status -> Index/Indexing Overview in the Search app. Sorry, I don't remember the exact name of the menu option, no splunk in front of me right now.

Since these views are built on saved searches, you can study them for educational purposes.

/K

Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In January, the Splunk Threat Research Team had one release of new security content via the Splunk ES Content ...

Expert Tips from Splunk Professional Services, Ensuring Compliance, and More New ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Observability Release Update: AI Assistant, AppD + Observability Cloud Integrations & ...

This month’s releases across the Splunk Observability portfolio deliver earlier detection and faster ...