Using 6.6.1 and also having some problems. Setup seems ok, a thing I made sure is the new folders and files to be owned by the splunk user (running enterprise in azure, using the arm template setup).
What I am having trouble with , are some of the search commands, which seem to give completely strange output. I am not getting empty output, but just inconsistent output compared to what I am expecting. Especially jqlsearch seems to not work, as well as issues.
... View more