Splunk Search

How to delete logs at the web interface with out using | delete?

NicolásMilans
Explorer

Hello,

i need to de  delete some old logs on my cloud instance because i run out of space 

NicolsMilans_0-1660049803657.png

 

is there any way to remove old logs with out using the delete comand on a search ?

i need to to remove this logs only by the web interface

Thanks 

0 Karma

somesoni2
Revered Legend

If you've necessary privileges, you could change the retention period of the index to reduce its size. Just carefully evaluate the new retention and it's impact on data before implementing it (to avoid unwanted data loss).

https://docs.splunk.com/Documentation/SplunkCloud/8.2.2203/Admin/ManageIndexes#Manage_data_retention...

NicolásMilans
Explorer

Thanks  !

0 Karma

richgalloway
SplunkTrust
SplunkTrust

There is no way to free disk space from the UI.  Even the delete command will not do so.

Releasing disk space should be done from the CLI after investigating what is consuming the space (it's not always Splunk).  If Splunk indexes are to blame then space can be recovered by setting frozenTimePeriodInSecs to a lower value for problem index(es).

---
If this reply helps you, Karma would be appreciated.

NicolásMilans
Explorer

Thanks  ,

The problem is that i dont have acces by CLI to my cloud instance ,

Should i contact splunk to solve this issue?

 

Thanks 

 

 

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Level Up Your .conf25: Splunk Arcade Comes to Boston

With .conf25 right around the corner in Boston, there’s a lot to look forward to — inspiring keynotes, ...

Manual Instrumentation with Splunk Observability Cloud: How to Instrument Frontend ...

Although it might seem daunting, as we’ve seen in this series, manual instrumentation can be straightforward ...

Take Action Automatically on Splunk Alerts with Red Hat Ansible Automation Platform

Ready to make your IT operations smarter and more efficient? Discover how to automate Splunk alerts with Red ...