Application Management

 


Create a test index

This documentation does not apply to the most recent version of Splunk. Click here for the latest version.

Create a test index

Splunk stores data in indexes, which reside in flat files in a datastore on your file system. By default, data you add to Splunk is stored in the main index, but you can create and specify other indexes for Splunk to use for different data inputs. Each index is a separate spot on disk with its own retention policy. You can use multiple indexes to control user access to data, to set different retention policies for different sets of data, or for optimization in certain cases. This topic shows how to create a test index where you can work with test data without contaminating your main index. See About managing indexes in the Admin manual for more information.

To create the test index:

1. From the Launcher, click the Manager button.

OR

From the Search app, click Manager at the top right of the screen.

3. Click Indexes in the Manager window.

AppManageMgrIndex.png

4. Click New.


Solutionsdownloadindex.png

5. Enter test for the Index name.

Solutionsindexnew.png

6. Accept the defaults for the other values.

7. Click Save.

8. The index test now appears in the Indexes screen. Click Enable to enable the index.

8. Restart Splunk as prompted.

This documentation applies to the following versions of Splunk: 4.1 , 4.1.1 , 4.1.2 , 4.1.3 , 4.1.4 , 4.1.5 , 4.1.6 , 4.1.7 , 4.1.8 View the Article History for its revisions.


You must be logged into splunk.com in order to post comments. Log in now.

Was this documentation topic helpful?

If you'd like to hear back from us, please provide your email address:

We'd love to hear what you think about this topic or the documentation as a whole. Feedback you enter here will be delivered to the documentation team.

Feedback submitted, thanks!