Splunk® SOAR (Cloud)

Administer Splunk SOAR (Cloud)

The classic playbook editor will be deprecated in early 2025. Convert your classic playbooks to modern mode.
After the future removal of the classic playbook editor, your existing classic playbooks will continue to run, However, you will no longer be able to visualize or modify existing classic playbooks.
For details, see:

Create and download or upload a diagnostic file

can create diagnostic files that contain selectable categories of data to help Splunk Support diagnose issues with your deployment. You need an active support case, and credentials for the Support Portal to upload the diagnostic file to Splunk Support. For more information on opening a support case, see the heading Splunk Technical Support in the topic Administer .

Create a diagnostic file

Diagnostic files can be created using the web-based user interface.

From the Home menu, select Administration, then System Health, then Debugging.

  1. (Optional) Click the ► symbol next to Advanced.
  2. (Optional) Select the checkboxes for the categories you want to include in your diagnostic file; Instance, System, Database, Apps, Filesystem, and Cloud. The default setting includes all sections except filesystem.
  3. (Optional) Select the range of logs you want to include in your diagnostic file; All Logs or Recent Logs. The default is All Logs.
  4. To download the diagnostic file locally click Download Logs.
  5. To upload your diagnostic file and attach it to your support case, click "Upload to Support".
    1. Type your Support Portal username, password, and case number.
    2. Click Login and Upload.

Usernames must be submitted in all lowercase letters.

Last modified on 06 November, 2024
Configure the logging levels for the action daemon   Enable and download audit trail logs in

This documentation applies to the following versions of Splunk® SOAR (Cloud): current


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters