Hello Splunkers,
I am relatively new with Splunk and was wondering if someone out there can please tell me which query to run to get a list of splunk INDEXes on my environment. Any assistance you can provide in that regard would be greatly appreciated.
Thanks you in advance.
Cosmo.
There are a few ways to do that.
Go to Settings->indexes.
*Run the query | rest /services/data/indexes
*Run the query `| tstats count where index= by index | fields - count`
And probably others.