What is the main difference between source & source type?
Answer / Brijesh Kumar Singh
Source refers to the location where data is ingested by Splunk, such as a log file or database. Source Type is a categorization of the source that helps Splunk parse and index the data more efficiently, based on the structure of the data.
| Is This Answer Correct ? | 0 Yes | 0 No |
Where to create knowledge objects, dashboards, and reports?
What do you mean by roles based access control?
Explain search factor (sf) & replication factor (rf)?
How to locate the place where default splunk configuration is stored?
When to use auto_high_volume in splunk?
What is the eval command?
What is the primary difference between stats and eventstats commands?
What is the command to get list of configuration files in Splunk?
Why should we use splunk alert?
How does splunk determine 1 day, from a licensing perspective?
If I want to add/onboard folder access logs from a windows machine to splunk how can I add same?
Explain search factor (sf)?