notable event

noun

An event generated by a special type of saved search known as a correlation search. Notable events can be investigated using the Incident Review dashboard.

This term applies to the Splunk App for Enterprise Security and the Splunk App for PCI Compliance.

configuration

configuration file

event processing

character set encoding

segmentation

segment

timestamping

timestamp, timezone offset

default field extraction

host, source, source type, punct


archiving

retention time