Dashboards & Visualizations

Mapping an index to an app

sushmitha_mj
Communicator

Hi...
I have created my own app and I have an index as well. I want to map this index to the app... How should I do this using splunk web?
If I cannot do this using splunk web, how else should I do it?

Tags (3)
1 Solution

sanjay_shrestha
Contributor

You might need to create indexes.conf and configure under your apps default folder manually.

View solution in original post

sanjay_shrestha
Contributor

You might need to create indexes.conf and configure under your apps default folder manually.

sushmitha_mj
Communicator

Does it need some kind of a restart, to reflect on the splunk web?
Do I have to make any changes to the index files?

0 Karma

sanjay_shrestha
Contributor

Yes it would require Splunk restart.

sanjay_shrestha
Contributor

What do you mean by changes to index files?

sushmitha_mj
Communicator

How should I restart?
Yes, I mean changes to index files?

0 Karma

sanjay_shrestha
Contributor

Settings > Server Controls > Restart Splunk

sushmitha_mj
Communicator

Thank you so much... It worked, the change reflected.. 🙂

0 Karma

somesoni2
Revered Legend

What you mean when you say your want to map the index with the app? You want to make the index only accessible from the app?

0 Karma

sushmitha_mj
Communicator

No.. I want the app to use this index instead of default index and when I go to the splunk web-> index name, I want to see this app name instead of "system". Basically, I want the app to populate data from this index.

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...