...rom. I know Splunk has a license usage report but I'm needing the data behind it and for the past 60 days.
Here is my search string.
index=_internal source=*license_usage.log* type=Usage | t...
...hierarchies: event, search, and transaction.
Datasettypes
You can work with three datasettypes. Two of these datasettypes, lookups, and data models, are existing knowledge objects that h...
The results for the searches on the License Usage Dashboard (in the SUM app) are off. They all include a large spike at the beginning of the day because they are not specifying "type=Usage" in the s...
...r since Splunk recognizes and inputs data as a character string, the data types not be related to license usage?
Also, if the former is correct, is it possible to set any data types to each column o...
In the Threat Activity Detected IR correlation search, it calls for stuff from the "Threat Intelligence" Data Model. As an example, an IP has been found to be malicious, and it only reports on DNS l...
Hello Guys, Good Day!! Can anyone please help me with a question that I have. Can I use a macro in the event type in Splunk. I am trying but looks like there is some issue. A very small e...
Hi,
I want get the license usage by host and specifically for windows OS, I got host usage by below query, but if I add the tag=windows* its not given any output. Please suggest me
index=_...
Hi,
The Splunk warnings that we see in license master - is it based on license_usage log's type=Usage or type=RollOverSummary?
Earlier i had raised a different question on these types - h...
...hecking the usage of any new data on-board in the future.
How should I modify the query?
Thanks for the help in advance.
Ricky
index=_internal source=*license_usage.log type="Usage"
| e...