Hi all.
I use Splunk on my workplace and recently I feel like it's performance is decreasing. Basic search queries like my username or email address would provide results, now it wouldn't.
Doesn't matter the time frame I choose, zero events.
I was told that an app called "estreamer" was down and one of the infrastructure worker fixed it and claimed to restore all missing data. It was last Thursday. Sadly, he's not familiar with this system so I need to address the issue when I talk with him.
Today, I still cannot search these basic strings, it gives zero events.
Any idea how I check what's wrong so I can tell the infra worker to fix certain issue/index/app?
... View more