Due to some Performance Issues, Lookup/Dashboard failures, search failures and taking longtime to execute the searches. we have done some troubleshooting and come up with some exclusion list which needs to be blacklist. here I have few questions
1. how to blacklist these exclusion list? what will be the process and procedure that needs to be followed? 2. where should we blacklist? should we create any global App? is there any specific App or place to do this?
3. most of these are .csv files, Bin and Jar files.
I could see few splunk community answers, but I couldn't see any complete process or any procedure to follow.