February 2017
Beginner to intermediate
962 pages
21h 26m
English
Search history is %another useful feature introduced in Splunk 6.3 which can be used to view and interact with history of the search command. This feature can be used to get the complete list of search queries executed on Splunk over time.
The search history feature can be accessed via the Splunk Web console by clicking on "Search & Reporting" App | Search. It takes the user to the search summary dashboard with the option to run search queries.
The following image shows the search summary dashboard from where the search history can be accessed:

The Search History option enables the following information on the screen:
Read now
Unlock full access