Reporting

View all host

chigueral
Explorer

How can I view all host (wintel or unix)....

Regards

Tags (2)
0 Karma

martin_mueller
SplunkTrust
SplunkTrust

You're better off running this:

| metadata type=hosts index=*

Will run over all time in no time.

chigueral
Explorer

Thanks a lot....

0 Karma

chandrasekhar4u
Engager

I downvoted this post because it's not an answer

0 Karma

jstockamp
Communicator

if you want to know all the hosts you have index data for do a search

index = "*" | stats count by host

Depending on the size of your indexes this query may take a long time to run.

0 Karma

arimaldo
Explorer

I am seeing INFO in the list of hosts but I don't see where that is coming from. What does it mean and where is it coming from?

0 Karma

arimaldo
Explorer

I found the source and it's coming from the /var/log/rhsm/rhsmcertd.log file. Can I just "blacklist" this entry "INFO" to keep it from showing up in the searches? Are there any drawbacks to do this - e.g. missing log files?

0 Karma
Get Updates on the Splunk Community!

Introducing Splunk Enterprise 9.2

WATCH HERE! Watch this Tech Talk to learn about the latest features and enhancements shipped in the new Splunk ...

Adoption of RUM and APM at Splunk

    Unleash the power of Splunk Observability   Watch Now In this can't miss Tech Talk! The Splunk Growth ...

Routing logs with Splunk OTel Collector for Kubernetes

The Splunk Distribution of the OpenTelemetry (OTel) Collector is a product that provides a way to ingest ...