You want to find ways to access your previous searches. You might have previously run a search job that you'd like to return to, or maybe you want to save yourself some time by building on your previous searches.
This video shows you a few different methods of accessing search history in the Splunk platform. You'll learn:
- How to use the Search History menu on the homepage of the Search and Reporting app
- How to use the
historycommand to search for previously run searches in the current application
- How to use the Jobs menu to find previously-run searches, as well as access new values, such as when the search will expire, and more filtering options
- How to manage search jobs in bulk
This article has been brought to you by Splunk Education. We’ve learned that the strongest superheroes up-skill with Splunk Education. That’s why we are making Splunk training easier and more accessible than ever with more than 20 self-paced, free eLearning courses. You can start with foundational courses like Intro to Splunk or dive into more advanced courses like Search Under the Hood, Result Modification, and many more. Enroll today so you have the skills to detect the good, the bad, and the unproductive.
In addition, these resources might help you understand and implement this guidance:
- Splunk Docs: Search history
Splunk OnDemand Services: Use these credit-based services for direct access to Splunk technical consultants with a variety of technical services from a pre-defined catalog. Most customers have OnDemand Services per their license support plan. Engage the ODS team at OnDemand-Inquires@splunk.