In Splunk 7.0 lookup and field extraction doesn't reflect immediate on splunk, it requires restart to the Splunk or it takes two/three hour after that looup and field-extraction reflection occurs. I am not able to understand whats wrong with my Splunk, Why is it too slow> Please help me to fix this.
Thanks
HI
Are you updating extracting fields from the backend?
Use below URL for reloading configurations.
http://SPLUNK_SERVER/en-GB/debug/refresh
Use below command after your search if you do not want to reload configuration.
sourcetype=xyz | extract reload=t
Happy Splunking