Splunk® Business Flow (Legacy)

Get Started with Splunk Business Flow Tutorial

Splunk Business Flow is no longer available for purchase as of June 20, 2020. Customers who have already purchased Business Flow will continue to have support and maintenance per standard support terms for the remainder of contractual commitments.

Upload the tutorial data

This tutorial uses data from Buttercup Games, a fictitious online store. The data includes weblogs, call center logs, and order system logs. Using the Game_store.zip data ensures that your results are consistent with the tutorial.

Prerequisites

  • Use the following link Game_store.zip to download the Game_store.zip tutorial data.
  • Do not uncompress the file.

Steps

  1. If you are not on the Splunk Home page, click the Splunk logo on the Splunk bar to go to Splunk Home.
  2. Click Settings.
  3. Click the Add Data icon.
    This screenshot shows the Add Data icon in the Splunk Search & Reporting app.

  4. Click Upload.
    This screenshot shows the Upload icon in the Splunk Search & Reporting app.

  5. Click Select File to browse for the file in your download directory.
  6. Select the Game_store.zip file and click Open.

  7. Click Next to continue to Input Settings.
    Under Input Settings, you can override the default settings for Source type, Host and Index.
  8. Keep the automatic Source type assignment under Input Settings.
    This screenshot shows the settings for this data. The Input Type is Uploaded File,  the File Name is Game_store.zip, the Source Type is Automatic, and the Index is tutorial.
  9. Under Index, click Create a new index.
    This screenshot shows the create a new index button.
  10. Enter tutorial in Index Name.
  11. Click Save in the index panel.
  12. Select tutorial as the index.
    This screenshot shows the index for selected for this data. In the previous step you selected the index "tutorial".
  13. Click Review.
    Check that the settings match the tutorial.
    This screenshot shows the settings for this data. Input type is uploaded file, file name is Game_store.zip, Source Type is automatic, and index is tutorial.
  14. Click Submit to add the data.
  15. Click Start Searching.
  16. In the time range picker, select All time under Presets.

Next

You now have data in the Splunk platform! Continue to What is a Flow Model?

Last modified on 21 August, 2019
How SBF groups events   What is a Flow Model?

This documentation applies to the following versions of Splunk® Business Flow (Legacy): -Latest-


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters