Splunk Search

Splunk Stream question

chaker
Contributor

I work for energy capture and storage organisation and we were thinking of using Splunk to capture data from our main "Ecto-Containment System". Streams are a key component of our workflow and one of our reps, Spengler, said we shouldn't cross the streams.

I was just curious what happens if you cross the streams?

Tags (1)
0 Karma
1 Solution

dokian
Explorer

It would be bad.

Try to imagine all indexing as you know it stopping instantaneously and every bucket in your indexes exploding at the speed of an accelerated data model.

View solution in original post

woodcock
Esteemed Legend

If you are using Flash for your Indexers, then you will crush all the bugs:

http://www.hitfix.com/whats-alan-watching/review-the-flash-revenge-of-the-rogues-heat-wave-vs-captai...

0 Karma

ppablo
Retired

Hi @chaker

To clarify for other users, but are you referring to the Splunk App for Stream? https://splunkbase.splunk.com/app/1809/ You didn't mention it anywhere in your post.

dokian
Explorer

It would be bad.

Try to imagine all indexing as you know it stopping instantaneously and every bucket in your indexes exploding at the speed of an accelerated data model.

piebob
Splunk Employee
Splunk Employee

alt text

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Splunk Asynchronous Forwarding Explained

Splunk asynchronous forwarding is often misunderstood as simply setting autoLBVolume. That is not quite right. ...

55 Days to Go: Secure Your Seat at Splunk University in Denver

Your .conf26 Experience Starts Before Opening Keynote  If Denver is known for its mile-high elevation, Splunk ...

(re)Introducing the Splunk Community Champions + 2026 – 2027 Splunk MVPs ...

This program exists as a channel to empower and recognize Splunk advocates and help supercharge initiatives to ...