What problem does it solve?
Render, preflight, and validate Splunk Cloud Platform Dynamic Data Active Archive (DDAA) lifecycle assets: per-index archive retention via the ACS API (searchableDays plus splunkArchivalRetentionDays), enable/update payloads, archived/restored storage audits, and a guided UI restore handoff. Use when the user asks to archive expired Splunk Cloud data to the Splunk-managed archive, set or change DDAA archive retention, enable/update on index, restore archived data for searching, audit archive/restore storage consumption, or understand DDAA versus DDSS retention tiers.
Core Features & Use Cases
- Render per-index DDAA retention payloads and assets (create/enable/update) via ACS API.
- Provide status and audit tooling to inspect current retention, archived data, and restored buckets.
- Guided UI restore handoff and a safe, render-first workflow to manage retention without direct data loss.
Quick Start
Render DDAA assets for a selected stack and index, then apply changes with enable-ddaa.sh and use status.sh, restore.sh, or audit.sh for validation and management.