Splunk Search

Load of index Data statistics on starting page?

tweaktubbie
Communicator

Just wondering when looking into performance improvements... After logging in to Splunk (...app/launcher/home), you see on the right some fancy statistics that are interesting for the first times, but after that makes one wonder... Like:

Events Indexed: 7,725,934,214
Earliest Event: 6 years ago
Latest Event: Now

It keeps on updating the numbers for quite some time, giving the impression doing some background query.
Not relevant for all users. So: anyone any knowledge of the load this causes as every user gets this?

Can this be disabled for all users and how?

Tags (3)
0 Karma

martin_mueller
SplunkTrust
SplunkTrust

The load generated by this is very low - it's not actually looking at those seven billion events but only at counters / meta-data.

0 Karma
Get Updates on the Splunk Community!

Modern way of developing distributed application using OTel

Recently, I had the opportunity to work on a complex microservice using Spring boot and Quarkus to develop a ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had 3 releases of new security content via the Enterprise Security ...

Archived Metrics Now Available for APAC and EMEA realms

We’re excited to announce the launch of Archived Metrics in Splunk Infrastructure Monitoring for our customers ...