Products/Services
product
- Why choose Splunk
- Installation record
- price
- Splunk Enterprise Security
- Splunk Phantom (SOAR)
- Splunk ITSI (Next Generation IT Operations)
- Splunk Observability Cloud
- Splunk UBA
- Macnica CSIRT App Basic
- App for Splunk for Financial Institutions
- Splunk Analytics for Hadoop
- About Apps
- Splunk Edge Hub
- What is Splunk
service
- Dashboard/SPL Creation Pack [Implementation/Building Support]
- Version upgrade service [implementation and construction support]
- Smart Security Monitoring App [Original App/Service]
- Splunk × LANSCOPE Original App [Original App/Service]
- Security Monitoring App for Box [Original App/Service]
- Cloud Security Monitoring App [Original App/Service]
- List of services
- Macnica Premium Support for Splunk (utilization support, version upgrade monitoring)
- Macnica Premium Support for Splunk Skill Up Package
Specifications/Technical Information
Specifications/Technical Information
Evaluation machine application/FAQ
Application for evaluation machine
- FAQ
Behavior if no index is specified in the search statement
- release date
- 2015-11-19
- last updated
- 2023-12-05
- version
- Splunk Enterprise 9.0.4
- Overview
- If no index is specified in the search statement, the index to be searched will be the one set for each role.
- Reference information
- content
-
If you do not specify an index as "index=xxx" in the search statement, the index to be searched will be the default search index set for each role.
How to check which index is searched by default
- Log in as a user with admin privileges, and from Splunk Web Settings > Roles, click the role name set for the user who performed the search.
- Check the index selected as default from "3. Index" in the reference image.
reference image
In the image below, the default column "main" is checked, so if no index is specified in the search statement, the "main" index will be searched.
To search an index other than the above, specify the index name in the search statement.
that's all
In charge of Macnica Splunk Co., Ltd.
- TEL:045-476-2010
- E-mail:splunk-sales@macnica.co.jp
Weekdays: 9:00-17:00