...ood example were: lookup files, but i guess indexer should not need any lookup files since that job is done be search head, not indexer. The same with other KO objects like tags, event types, macros etc....
Hi Splunkers, in our Splunk Cloud environment we had 2 need: Reassign knowledge object owner Reassign Knowledge object app The first point management is well known and we already applied it, a...
Hello, This question has probably been asked and answered, but I just can't seem to find a best solution. So, in the results I want to table the Allow and Deny values. And the second ...
I am looking to define globally all of the 'knowledge objects' within a search head. Where is the URL found within Settings? Or is there a different search that would provide the URL? I want to i...
I need to get the list of .conf files. On running my below Splunk Query,
"| rest /services/configs/conf-props"
it returns the conf objects, but I need to find the .conf files instead of object...
Hi, First question here - apologies if it's obvious or basic! I am trying to parse a nested list and find specific policies that match a couple of criteria. But I can't seem to get the logic right....
...earch by address, we're using spath currently to parse the JSON. We don't have to do that anymore with the new format but the additional_information part of our object is still JSON, how can I p...
I have a data where I got empty object. I would like count in total how many empty object in one table data and also make average on this empty object. PS: I am beginner level s...