Follow these steps to search and tabulate the selected event data:
- Log in to your Splunk server.
- Select the Search & Reporting application from the left-hand side of the screen, as shown in the following screenshot:
- Set the time range picker to Last 24 hours, and type the following search into the Splunk search bar. Then, click on Search or hit Enter:
index=main sourcetype="access_combined"
The following screenshot illustrates the process:
- Splunk will return the results of the search and display the raw search events under ...