Hi everyone, I'm looking for a search, that shows me when the health status of splunkd is changing from green to yellow or red... Would that be possible?
...er-indexer shows a similar result, it's a little bit off in sizing on each indexer and therefore the total is not right.
However the bigger issue is that the REST endpoint of:
/services/admin/introspection...
We are upgrading our environment (including search head pools) from 5.x to 6.2.2, and would like to take advantage of kvstore. From what I can work out, by default kvstore is setup in a standalone mo...
I have created a dashboard to show the execution history of scheduled jobs which had ran. I used the logs from "index=_internal sourcetype=scheduler". This gives me the past run of all the scheduled...
Does anyone know of a rest call that can be used to kill all adhoc queries for a user? I do not wish to all users searches, nor do I want to kill schedule searches for that user. I have the fo...
Our Java app, developed in-house, has easily-parsed logs. I'd like to get them into Splunk real-time, and in an elegant way. (Nicer than Splunk tailing log files?) I can edit our Java app to do wh...
hi me again. need help. this search string works perfectly fine when doing search int he gui this search works fine in SPLUNK APP = XADATA index=xa_data sourcetype=xaupload Time_!=timesta...