I am new to Splunk, Can someone please explain me what below query is doing and what does 1 mean at the end of Sourcetype and LIke and what 1=1.
Thanks in advance
| eval UseInSummary=case(
...
Hello, I upgraded our office's Search Head (SH) to 8.1.9 from 8.0.4. On the previous version, MC wouldn't even load. Now that it does, the Overview Window just says "Searching for..." (See s...
Most fields are having "No results found", except 4, which is "Unique devices", "Device logins", Config changes" and "Unique indexes".
But when I use "Open in search" for these 4 searches, they ac...
I want to set up an organized system of permissions so we can give the right access to the right data and the right Splunk features to the right analysts in my organization. Can I get a sketch of how...
Not really a question but I did find dashImage.png in the 6.2 overview app.
I wasn't going to ask a question but .... What the heck is it!
I feel like my server has been violated somehow.
I've heard that using AWS Lambda is a great way to get high volumes of data directly into Splunk without the overhead managing hardware. It seems like a great solution, can you provide an overview t...
What would be the best way to add 'hostname' field to the 'Status Overview' dash under Uptime Monitoring. I noticed under 'Data Inputs' / 'Ping' , a name(hostname) exists as new hosts are added. W...
I have a handful of searches that I want to build into reports and dashboards so I can collaborate with my team. Can you give me a sketch of how Splunk reports and dashboards work?
Hi all,
I want to checkout the overview app 7.2. It looks like i t have been renamed to "Splunk Essentials for Cloud and Enterprise 7.2"?!
description looks fine: "Release 7.2 is the latest v...
I have a search to get an overview of all users with their authorizations: roles, capabilities, indexes (search found somewhere else on this community). I wonder if it is also possible to get an overview...