Splunk Search

Remove Host Splunk NIX

ingersolls
New Member

I have deleted all entries for a remote host with a splunkforwarder (linux). After restarting Splunk the host still shows up under available data sources. How do I get rid of this host which no longer has a forwarder off of my Splunk indexer?

Tags (2)
0 Karma

dearimranz
Engager

Guys, I have the same problem. Any comments?

0 Karma
Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...