Splunk Search

what format are raw logs stored in the Indexer ?

damode
Motivator

In addition to the main question,
Client wants to install Splunk in non-default partition (i.e not the default Splunk drive (C:)) and
also wants to store all indexes in other partition (E:)
It's on a Windows Server

I know that the above is possible but I would just like to know if there are any things I should keep in mind before doing that. If that would affect in the way Splunk operates

0 Karma
Get Updates on the Splunk Community!

Archived Metrics Now Available for APAC and EMEA realms

We’re excited to announce the launch of Archived Metrics in Splunk Infrastructure Monitoring for our customers ...

Detecting Remote Code Executions With the Splunk Threat Research Team

WATCH NOWRemote code execution (RCE) vulnerabilities pose a significant risk to organizations. If exploited, ...

Enter the Dashboard Challenge and Watch the .conf24 Global Broadcast!

The Splunk Community Dashboard Challenge is still happening, and it's not too late to enter for the week of ...