What is a quick, comprehensive way to learn what data is present in a Splunk deployment?
What is a quick, comprehensive way to learn what data is present in a Splunk deployment?
The quickest and most comprehensive way to learn what data is present in a Splunk deployment is to click Data Summary in Splunk Web. This feature provides a summarized view of all the data indexed in Splunk, including sources, sourcetypes, and hosts, giving a clear overview of the data available within the deployment.
C , page 17
C, based on https://docs.splunk.com/Documentation/Splunk/9.0.5/InheritedDeployment/Yourdata