One of my Splunk users has left the company. She owned an Appand many saved searches, alerts, etc that all have her name on them. How can I change these to have the name of the new owner of this App...
...he app can "promote" an object to be "available globally to users of all apps".
However, in my testing, only users with the admin_all_objects capability can promote an object globally, and I c...
I currently have an Enterprise trial license and was wondering what would happen after the trial ends. Will I still be able to forward data into the instance and create searches?
Hi,
could not find anything on the website. I like to try and maybe use splunk indefinteley on my home lab. Is there such a thing like free license or home license? Enterprise trial is for 60 d...
...efined will no longer trigger. You will no longer receive alerts from Splunk software. You can still schedule searches to run for dashboards and summary indexing purposes."
But after switching to S...
Hi, I'm trying to migrate my Splunk instance from an AWS VM to a GCP VM.
I copied over this file splunk-6.5.0-59c8927def0f-Linux-x86_64.tgz to my new GCP instance and ran the following c...
Hi I checked splunk today to find the following error, however I did not exceed any quota's. I had a trial licence and today switched to a free licence. I've read other posts about this and have s...
I've switched my license from the trial to free and in doing so, the users I created are no longer there, which has created an orphaned embed. It tells me to reassign it to a valid user, but when I t...
Hi,
We have Splunk v. 6.3.3 multi site indexer cluster (8 indexers), 4 search heads, deployment server.
What's the best approach to backup policy?
1. Should we backup $SPLUNK_HOME/etc d...
We have several lookup files for users who have left, and we would like to transfer the ownership to a new production user that we have created for the purpose. Any idea how to do this?
For o...