Hi all Splunk expertise,
I got some technical concern from data export/extraction, hope can get some technical advice over here.
Can search head extracting raw event available according on certain time range example data availability up to quarter year and extract on schedule by daily basic.
Assume total quarter data size had 4TB.
Thanks
↧