Home‎ > ‎Splunk‎ > ‎

Basic Search



Look for data from hosts with a common name. 

I have all my firewalls have the "fw" somewhere in the hostname.  With this, I can simply run the following search
host=*fw*

and it will come up with all the data from all the firewalls being logged.  






Comments