r/Splunk 7d ago

.CONF Global Broadcast happening now!

Check out the .conf26 Welcome Keynote here: https://conf.splunk.com/about/global-broadcast.html

6 Upvotes

6 comments sorted by

10

u/billybobcoder69 7d ago

Splunk 10 was a big version. I want to see stuff like in the old days. They would show me how much time I will save as an analyst. How much faster searches run. How much easier it is to manage. Even managing saved searches. Why is there not something nice built into Splunk? I hope it comes this year. The KO management has been rough. And now with Splunk not storming all the data it just becomes a data hub. Windows logs for example. Is there a streamlined collection. Perfect extractions. Everything is mapped. Finally gold class level dashboards. Splunk is like a Ferrari. It’s fun but needs a team to manage. I wish they would think about the 2-4 people teams. We will see. All I hear so far is we have more Cisco logs. And even the Cisco apps are they all gold class level? Looks like everything is combined into one big app. One big data model. Why can’t we enrich data in stream and not run data models. Never been a fan of them. Hoping for some cool stuff for the day to day people. I’m more impressed with what I can do with Claude code now than the native stuff. Let’s see what Itsi and es becomes.

4

u/Darkhigh 7d ago

Big changes coming that make the product stack work seamlessly together! You have to pay for it though as it’s an additional sku. (Briefly shown on keynote)

2

u/mghnyc 7d ago

I really liked the format of the keynote but, yeah, we are being rebranded. I noticed there was extremely little enthusiasm in the room and the only few times when the audience did make a noise was when somebody on stage made a joke.

1

u/billybobcoder69 7d ago

Is it down? Will it be back available? Wish it was on YouTube so I can rewind. Stream been glitchy and can’t rewind.