Yes, I used this query: | rest /services/apps/local splunk_server=* | search disabled=0 core=0 | fields title label version splunk_server | stats values(title) as title, values(label) as label, values(version) as version, by splunk_server disabled=0 is only listing the apps that are enabled (in use) core=0 is only listing the apps that are not Splunk core apps (part of the install pkg)
... View more
Is there any way to display results in a report for the entire environment (ie. sh1, sh2, sh3...etc) or will it need to be run individually for each instance?
... View more