Hi to all and sorry for my English. I'll try to be detailed to explain the problem.
I can no longer see some hosts on the Home of Splunk after using the command "host = name_of_host | delete" and have reinstalled Splunk on hosts (changing the name of the host in inputs.conf).
There are no errors in the logs and I have tried several times to reinstall but I can not add them again. If I do the installation on other hosts never added in Splunk server (where I never run the command "host = name_of_host | delete"), they are immediately added to the Home of Splunk.
How do I add them again?
Thanks
Hi R.Turk and thanks for your reply.
Unfortunately now I know the behavior of the command. Is there a way to instruct Splunk to re-add hosts?
Hi Tylerwebmail - The behaviour you are describing is expected. By running the command:
host-name_of_host | delete
You have instructed Splunk to not report previously indexed data in Splunk from that host.