Splunk Search

Search run time setting

jcisha
Path Finder

The question again.
(The question before, but did not respond.)

I would like to know how to change the time to run the Splunk search inquiries.

About 1 hour learned through testing.

To ask why.
If you were to generate real-time through DashBoard
An hour later, the problem occurs.
Search did not run. (there is no change of the Data)

Reflash must screen every hour.

Tags (1)
0 Karma

cyue_splunk
Splunk Employee
Splunk Employee

Not sure if I understand your question correctly, but did you have chance to check this post before to see if it solved your issue?

http://splunk-base.splunk.com/answers/24238/dashboard-automatic-refresh

0 Karma

jcisha
Path Finder

dashboard screen refresh, when the search is run again, while "waiting" can solve the problem shown Is there any?

0 Karma
Get Updates on the Splunk Community!

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

 Prepare to elevate your security operations with the powerful upgrade to Splunk Enterprise Security 8.x! This ...

Get Early Access to AI Playbook Authoring: Apply for the Alpha Private Preview ...

Passionate about security automation? Apply now to our AI Playbook Authoring Alpha private preview ...

Reduce and Transform Your Firewall Data with Splunk Data Management

Managing high-volume firewall data has always been a challenge. Noisy events and verbose traffic logs often ...