Looking for some basic help with the Splunk Web Analytics Apps.
Currently app is installed and pulling in the /var/log/httpd/* logs with sourcetype=apache_common. However not able to display any data.
When I run the two lookups I don't get any result..wondering if my initial setup is correct.
1) How do I get data in this app? The documentation says "Make sure you use the sourcetype apache_common, apache_combined or iis for this data" My source is apache so what sourcetype do I use? apache_common or apache_combined?
2) Are the /var/log/httpd/* logs all that are required for the app for soruce data?
Thanks!
... View more