Application: twiki logs
Categories:
Description
Contains the basic extractions as well as some saved searches, reports, event types, and custom dashboard modules.
This contains configuration to extract the relevant fields at search time from the twiki logs.
It doesnt contain any special configuration to index twiki logs, basically cause no special configuration is necessary. As long as you have the twiki logs in there, indexed as sourcetype="twiki", you'll be good to go.
Contains some simple examples for eventtypes, saved searches, reports, and custom dashboard modules (like the ones we use for 'all indexed data').
If you're kind of an advanced user of Splunk, the latter will probably be the most interesting to you because although the feature is not fully baked, nor well documented, it can be very useful if you're willing to tinker with it.
Anyway, twiki logs are a fun dataset to play around in. As well as being, how can i put this... Kinda organizationally humorous sometimes. =)