Posts

Meta Woot! App for Splunk Demo

In this short video, we demonstrate our Discovered Intelligence Meta Woot! app for Splunk. Read more

Splunk 6.6 New Features – Part IV – Trellis Layout Visualization

In this post, we will walk through some use cases and data formats to configure the new Trellis Layout Visualization in Splunk 6.6. Read more

Splunk Enterprise 6.6 New Features – Part III

We continue to explore the new features of Splunk 6.6. In part I and part II we talked about the new Knowledge Object management feature and the Search Editor enhancements. In this post, we will discuss the introduction of the new Search Head Cluster (SHC) graphical user interface and Indexer Clustering improvements in Splunk 6.6.

Read more

Splunk Enterprise 6.6 New Features – Part II

In part 1 of our series into the new features of Splunk Enterprise 6.6, we looked at Splunk Knowledge Object management. In part 2, we will explore new features within the enhanced search editor, such as line-numbering, syntax highlighting and macro expansions. Read more

Splunk Enterprise 6.6 New Features – Part I

Splunk Enterprise 6.6 introduces new features in Data Visualization, Indexer and Search Head Clustering, Knowledge Object management and more to enhance user experience. This series of Splunk 6.6 blog postings explores some of these new features in detail. Read more

Splunk Data Integration – Getting Data Out of Splunk

There are several ways of integrating Splunk within your environment or with your cloud service providers. In this post, we will outline some of the many methods you can use to get data out of Splunk. In a related post, we outline some of the many ways to get data into Splunk. Read more

Splunk Data Integration – Getting Data Into Splunk

There are several ways of integrating Splunk within your environment or with your cloud service providers. In this post we will outline some of the many methods you can use to get data into Splunk. In a related post, we will outline some of the many ways to get data out of Splunk. Read more

Splunk and the Internet of Things (IoT)

What’s new in Splunk 6.3?

The release of Splunk Enterprise 6.3 saw improvements in performance, management and Total Cost of Ownership (TCO). Data integrity control, intelligent job scheduling, custom alert actions, geospatial visualization, anomaly detection and the addition of the HTTP event collector are only a few of the new features available in 6.3. This blog posting will discuss two of these features in more detail and what it means for Splunk’s push into the Internet of Things (IoT). Read more

How to Create a Splunk KV Store State Table or Lookup in 10 Simple Steps

As of Splunk 6.2, there is a Key-Value (KV) store baked into the Splunk Search Head. The Splunk KV store leverages MongoDB under the covers and among other things, can be leveraged for lookups and state tables. Better yet, unlike regular Splunk CSV lookups, you can actually update individual rows in the lookup without rebuilding the entire lookup – pretty cool! In this article, we will show you a quick way of how you can leverage the KV store as a lookup or state table. Read more