Getting Data In

how can I delete or archive old data

perlish
Communicator

There're 300G disk space in my server, how can I delete or archive old data in splunk ?
Thank you !

Tags (1)
0 Karma
1 Solution

DaveSavage
Builder

Check this out...and there is a rich thread on this subject in splunkbase. Just be careful especially around the time parameters!

http://docs.splunk.com/Documentation/Splunk/5.0/Indexer/RemovedatafromSplunk

View solution in original post

DaveSavage
Builder

Check this out...and there is a rich thread on this subject in splunkbase. Just be careful especially around the time parameters!

http://docs.splunk.com/Documentation/Splunk/5.0/Indexer/RemovedatafromSplunk

Get Updates on the Splunk Community!

Modern way of developing distributed application using OTel

Recently, I had the opportunity to work on a complex microservice using Spring boot and Quarkus to develop a ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had 3 releases of new security content via the Enterprise Security ...

Archived Metrics Now Available for APAC and EMEA realms

We’re excited to announce the launch of Archived Metrics in Splunk Infrastructure Monitoring for our customers ...