Tags » Splunk

Splunk - Why is my Data Model not accelerated?


  • You want to enable ACCELERATION for your Data Model and nothing happens


See the error using this query

index=_internal sourcetype=scheduler <YOUR-DATAMODEL>


Free Cloud-based Log and Metrics Management Solutions

I have been looking around for a while for a cloud-based service which allows collecting logs and metrics and analysing them. I am particularly interested in a solution which can be deployed for free for smaller applications/amounts of data. 212 more words


Why ELK ?

In this post we will be discussing why ELK is so popular. We understood, the most use case of ELK is log analytics from my previous post –  175 more words


Reflecting on a decade of (quantified) music listening

I recently crossed the 10 year mark of using Last.fm to track what I listen to.

From the first tape I owned (Train’s Drops of Jupiter) to the first CD (Cat Stevens Classics) to the first album I discovered by roaming the stacks at the public library (The Most Serene Republic Underwater Cinematographer) to the college radio station that shaped my adolescent music taste (WONC) to the college radio station that shaped my college experience (WESN), to the shift from tapes, to CDs, (and a radio walkman all the while), to the radio in my car, to SoundCloud and MP3 music blogs, to Grooveshark and later Spotify, with Windows Media Player and later an iTunes music library keeping me company throughout…. 2,158 more words


Splunk / Python Script / Syslog Demo Data

Officially now a Splunk Certified User: (Splunker!)

With that in mind I thought I’d create a demo script to load some log data into Splunk, this is to show the data and some charts. 418 more words


Configure Splunk deployment server

One of the most over looked areas in any Splunk environment is the use of a deployment server for forwarder management. The Splunk forwarder alone is a very powerful tool, however as you expand your use of Splunk you may find a need to modify the forwarder to accept and translate additional data. 68 more words


Download Splunk _raw data from Index using the Web Interface

Select the appropriate time range.

In the Splunk search window, search for the index and table the _raw data.

Download the search results. Click on the Export button. 6 more words