the host monitoring keep fetching the CPU data.
I want to cancel the date source
Hi,
depending from where you are getting your data you just have to disable the stanza in inputs.conf on your forwarder to stop it from sending.
Hi @johnsmithcy,
you can use the below command in CLI:-
sourcetype=my_sourcetype | delete
For more details check this http://www.splunk.com/base/Documentation/4.1.1/Admin/RemovedatafromSplunk
thank you. any graphical interface method?
I am using windows version
Okay, so you can delete your sourcetype by following below steps:-
1. login to your splunk instance and goto settings
2. In data, goto sourcetypes and search for your sorectype(which you created for your "CPU" input).
3. delete that sourcetype.
Let me know if it works.
it works, thx
Hi,
depending from where you are getting your data you just have to disable the stanza in inputs.conf on your forwarder to stop it from sending.
i configure it through "add data"--> "monitor" --> local performance monitoring
Then try to find it under settings-> data inputs -> local Windows or local perfomance monitoring 🙂 than click delete or disable