 
		
		
		
		
		
	
			
		
		
			
					
		[1] I would like to know if I can tar an index from a Splunk instance and then untar it into other Splunk instance?
[2] Would untar'ing the index overwrites the already existing events of that other Splunk instance?
 
		
		
		
		
		
	
			
		
		
			
					
		 
		
		
		
		
		
	
			
		
		
			
					
		 
		
		
		
		
		
	
			
		
		
			
					
		Thanks! I'll try this out.
