Reputation: 1169
Is there a way to do time based sliding window query in splunk on real time? To provide an insight what I am looking for is, lets say if log statements are published to splunk, can I get counts of error which has occurred in last 15 minutes. And this has to be sliding and continuously updating me the state of the system.
Upvotes: 0
Views: 777
Reputation: 741
As you said, you can use real time queries.
Hope it helps.
Upvotes: 1