Answer Posted / Danish Husain
Splunk uses a technique called de-duplication to avoid indexing duplicated data. It does this by checking for existing events based on event time, source, and unique identifiers before indexing new data.
| Is This Answer Correct ? | 0 Yes | 0 No |
Post New Answer View All Answers