In order to use this command, you need to have can_delete
role added to your user.
If you want to clean all indices, use following command.
splunk clean eventdata -f
<your Splunk server>/debug/refresh
In order to use this command, you need to have can_delete
role added to your user.
If you want to clean all indices, use following command.
splunk clean eventdata -f
<your Splunk server>/debug/refresh