Splunk Search

Splunk Stream question

chaker
Contributor

I work for energy capture and storage organisation and we were thinking of using Splunk to capture data from our main "Ecto-Containment System". Streams are a key component of our workflow and one of our reps, Spengler, said we shouldn't cross the streams.

I was just curious what happens if you cross the streams?

Tags (1)
0 Karma
1 Solution

dokian
Explorer

It would be bad.

Try to imagine all indexing as you know it stopping instantaneously and every bucket in your indexes exploding at the speed of an accelerated data model.

View solution in original post

woodcock
Esteemed Legend

If you are using Flash for your Indexers, then you will crush all the bugs:

http://www.hitfix.com/whats-alan-watching/review-the-flash-revenge-of-the-rogues-heat-wave-vs-captai...

0 Karma

ppablo
Retired

Hi @chaker

To clarify for other users, but are you referring to the Splunk App for Stream? https://splunkbase.splunk.com/app/1809/ You didn't mention it anywhere in your post.

dokian
Explorer

It would be bad.

Try to imagine all indexing as you know it stopping instantaneously and every bucket in your indexes exploding at the speed of an accelerated data model.

piebob
Splunk Employee
Splunk Employee

alt text

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...

SplunkTrust Application Period is Officially OPEN!

It's that time, folks! The application/nomination period for the 2026-2027 SplunkTrust is officially open. If ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...