Splunk® Enterprise

Search Tutorial

Download manual as PDF

This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Download topic as PDF

Navigating Splunk Web

The Splunk bar, which is the black bar at the top of Splunk Web, gives you answers to these questions:

  • What other pages are there in Splunk Web?
  • How do you view or change the system configurations?
  • How do you edit account settings or log out?

This topic discusses how to use the Splunk bar to navigate Splunk Web.

Use the Splunk bar

The Splunk bar lets you navigate your Splunk instance. It is common to every page in Splunk. You can use it to switch between apps, manage and edit your Splunk configuration, view system-level messages, and monitor the progress of search jobs.

Splunk bar Tutorial.png

Return to Splunk Home

Click the Splunk logo on the navigation bar to return to Splunk Home from any other view in Splunk Web.

Apps menu

The Apps menu lists the apps that you have permission to view and run. You can Find more apps and Manage apps from this menu.

Tutorials home app menu.png

Settings menu

The Settings menu lists the configuration pages for Knowledge objects, Distributed environment settings, System and licensing, Data, and Authentication settings. If you don't see some of these options, you do not have the permissions to view or edit them.

Tutorials home settings menu.png

User menu

The User menu here is called "Administrator" because that is the default user name for a new installation. You can change this display name by selecting Edit account. You can also change the time zone settings, select a default app for this account, and change your password. The User menu is also where you Logout of Splunk.

Tutorials home usermenu.png

Messages menu

All system-level error messages are listed here. You see a notification (in red) when there is a new message to review. Click the X to remove the message.

Activity menu

The Activity menu lists shortcuts to the Jobs, Triggered alerts, and System Activity views.

Tutorials home activitymenu.png

  • Click Jobs to open the search jobs manager window, where you can view and manage currently running searches.
  • Click Triggered Alerts to view scheduled alerts that are triggered. This tutorial does not discuss saving and scheduling alerts. See "About alerts" in the Alerting Manual.
  • Click System Activity to see Dashboards about user activity and status of the system.


Click Help to see links to Video Tutorials, Splunk Answers, the Splunk Support Portal, and online Documentation.

Next steps

Now that you are more familiar with Splunk Web, add some data to Splunk Enterprise.

About Splunk Home
About getting data into Splunk Enterprise

This documentation applies to the following versions of Splunk® Enterprise: 6.0, 6.0.1, 6.0.2, 6.0.3, 6.0.4, 6.0.5, 6.0.6, 6.0.7, 6.0.8, 6.0.9, 6.0.10, 6.0.11, 6.0.12, 6.0.13, 6.0.14, 6.0.15, 6.1.13, 6.1.14

Was this documentation topic helpful?

Enter your email address, and someone from the documentation team will respond to you:

Please provide your comments here. Ask a question or make a suggestion.

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters