How to do it...

Follow these steps to search and tabulate the selected event data:

  1. Log in to your Splunk server.
  2. Select the Search & Reporting application from the left-hand side of the screen, as shown in the following screenshot:
  3. Set the time range picker to Last 24 hours, and type the following search into the Splunk search bar. Then, click on Search or hit Enter:
index=main sourcetype="access_combined"

The following screenshot illustrates the process:

  1. Splunk will return the results of the search and display the raw search events under ...

Get Splunk Operational Intelligence Cookbook - Third Edition now with the O’Reilly learning platform.

O’Reilly members experience books, live events, courses curated by job role, and more from O’Reilly and nearly 200 top publishers.