I want to list all the Kvstore collections through SPL. something like below... | rest /servicesNS/-/- ....... unable to figure out the right rest command and the correct fields . Would a...
Hi everyone, I am trying to use Splunk to catch a flag and also send an alert in a report if department = "business and economics" role = "staff" from the above spreadsheet. And I also...
Hello.
I'm running on RHEL 7 with 6.6.3 and an Indexer cluster (3 peers), and have 2 Search Heads not in a SHC but connected induvidually to the index cluster.
I try to use KVstore with a c...
Hi, I'm trying to update a KVstore so that the only entries in it will be for consecutive returns from a search.
For example, say the KVstore has the existing fields:
Title
C...
...he KVstore" part would mean, only then I would need it on instances other then indexers and forwarders if they run apps wich make use of the KVstore. But I was assuming that a search head cluster w...
For KVstore, $Splunk_HOME/etc/system/local/sever.conf was configured to use SSL. However, the following error is occurring and the kvstore process is not starting properly. Regarding the Web UI, w...
...onfiguration is invalid or does not include us
The kvstore appears to be healthy otherwise.
> curl -sku admin:password https://shcmember:8089/services/server/info | grep -i kv
<s...
We created a KVStore in a search head in clustered architecture, by adding the files collections.conf and transformations.conf.
--But we can't access the kvstore using inputlookup command and g...
Hi Team, As part of an integration from Splunk ES into a ticketing system, we're trying to monitor the notable_events KVStore and create a scheduled search when the status field changes that also s...
Hi,
I have clustered environment (Search Head Cluster with 3 SHs working with an Indexer Cluster with 2 IDXs) and I have created a KVStore lookup on the Search Head and set replicated = true ....