Splunk® Enterprise

Data Model and Pivot Tutorial

Download manual as PDF

This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Download topic as PDF

Navigating Splunk Web

Splunk Web is the primary user interface for searching, problem investigation, reporting on results, and administrating Splunk deployments. This topic discusses how to find the pages in Splunk Web that you need to complete this tutorial.

About Splunk Home

Splunk Home is the initial page in Splunk Web. Splunk Home is an interactive portal to the data and applications that you can access from this Splunk Enterprise instance. The main parts of the Splunk Home page are the Apps panel, the Explore Splunk panel, and the Splunk bar.

The following screen image shows the Splunk Home page for Splunk Enterprise. Splunk Cloud has a similar Home Page.

This image shows the Splunk Home page for Splunk Enterprise. There are labels on the Apps panel, the Explore Splunk panel, and the Splunk bar.


Apps panel

The Apps panel lists the applications that are installed on your Splunk instance. The list shows only the apps that you have permission to view.

When you first open Splunk Web, you see Search & Reporting and 7.0 Overview in the Apps panel. The Search & Reporting app is sometimes referred to as simply the Search app. The 7.0 Overview" is an app that contains information about the new and updated features in the 7.0 version. There might be other apps listed on the Apps panel if other applications are installed on your computer.

The Data Model and Pivot editors are part of the Search & Reporting app.

Explore Splunk panel

The Explore Splunk panel contains links to pages where you can get help.

Splunk Cloud
You can take a product tour or access the documentation that is used the most.
Splunk Enterprise
You can take a product tour, add data, browse for new apps, or access the documentation.

Splunk bar

The Splunk bar appears on every page in Splunk Web. You use this bar to switch between apps, configure your Splunk deployment, view system-level messages, and monitor the progress of search jobs.

  1. Click Search & Reporting.
  2. When you are in an app, the Applications menu displays in the Splunk bar. Use this menu to switch between apps.
    Splunk Cloud
    The following image shows Splunk bar in Splunk Cloud.
    This image shows the Splunk bar in Splunk Cloud. From left to right, the first item on the Splunk bar is the Splunk logo. The second item is the Applications menu.
    Splunk Enterprise
    The following image shows the Splunk bar in Splunk Enterprise.
    This image shows the Splunk bar in Splunk Enterprise. From left to right, the first item on the Splunk bar is the Splunk logo. The second item is the Applications menu.
    We will explore the Search app in detail. For now, let's return to Splunk Home.
  3. Click the Splunk logo on the Splunk bar.
  4. Regardless of where you are in an app, you can always click the Splunk logo to return to Splunk Home.

Next steps

Continue to the next topic to add the tutorial data to your Splunk deployment.

PREVIOUS
What you need for this tutorial
  NEXT
Load the tutorial data

This documentation applies to the following versions of Splunk® Enterprise: 7.0.0, 7.0.1, 7.0.2, 7.0.3, 7.0.4, 7.0.5, 7.0.6, 7.0.7, 7.0.8, 7.0.9, 7.0.10, 7.0.11


Was this documentation topic helpful?

Enter your email address, and someone from the documentation team will respond to you:

Please provide your comments here. Ask a question or make a suggestion.

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters