How to list all Splunk indexes
This is the first post in a series revolving around a Splunk usage. Something I always forget how to do is to list the current Splunk indexes on my indexers.
| eventcount summarize=false index=* | dedup index | fields index
This provide a table listing of all indexes on the indexer.
comments powered by Disqus