<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Setting up Alerts for basic things like Disk Space for windows/Unix servers in Monitoring Splunk</title>
    <link>https://community.splunk.com/t5/Monitoring-Splunk/Setting-up-Alerts-for-basic-things-like-Disk-Space-for-windows/m-p/688996#M10201</link>
    <description>&lt;P&gt;Hi Gcusello&lt;/P&gt;&lt;P&gt;Thanks for the information, Forwarders are installed on all servers currently, its just setting up the searches are my colleague is away for the week and i just trying to set up some basic alerts, thanks for your advice&amp;nbsp;&lt;/P&gt;</description>
    <pubDate>Wed, 29 May 2024 13:14:00 GMT</pubDate>
    <dc:creator>pc591f</dc:creator>
    <dc:date>2024-05-29T13:14:00Z</dc:date>
    <item>
      <title>Setting up Alerts for basic things like Disk Space for windows/Unix servers</title>
      <link>https://community.splunk.com/t5/Monitoring-Splunk/Setting-up-Alerts-for-basic-things-like-Disk-Space-for-windows/m-p/688989#M10199</link>
      <description>&lt;P&gt;I'm very new to this and found we do not have any alerts setup for basic things like Disk space on drives etc, I've done some basic courses but I don't know what to put after Host= to capture all drives on both windows and Unix&lt;/P&gt;&lt;UL class=""&gt;&lt;LI&gt;Application Crashes.&lt;/LI&gt;&lt;LI&gt;System or Service Failures.&lt;/LI&gt;&lt;LI&gt;Windows Update Errors.&lt;/LI&gt;&lt;LI&gt;Windows Firewall.&lt;/LI&gt;&lt;LI&gt;Clearing Event Logs.&lt;/LI&gt;&lt;LI&gt;Software and Service Installation.&lt;/LI&gt;&lt;LI&gt;Account Usage Kernel Driver Signing.&lt;/LI&gt;&lt;/UL&gt;</description>
      <pubDate>Wed, 29 May 2024 12:28:27 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Monitoring-Splunk/Setting-up-Alerts-for-basic-things-like-Disk-Space-for-windows/m-p/688989#M10199</guid>
      <dc:creator>pc591f</dc:creator>
      <dc:date>2024-05-29T12:28:27Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alerts for basic things like Disk Space for windows/Unix servers</title>
      <link>https://community.splunk.com/t5/Monitoring-Splunk/Setting-up-Alerts-for-basic-things-like-Disk-Space-for-windows/m-p/688992#M10200</link>
      <description>&lt;P&gt;hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/267298"&gt;@pc591f&lt;/a&gt;&amp;nbsp;,&lt;/P&gt;&lt;P&gt;at first see in documentation how to get data in from forwarders (&lt;A href="https://docs.splunk.com/Documentation/Splunk/9.2.1/Data/Usingforwardingagents" target="_blank"&gt;https://docs.splunk.com/Documentation/Splunk/9.2.1/Data/Usingforwardingagents&lt;/A&gt;)&lt;/P&gt;&lt;P&gt;then install on Forwarders one of these apps: Splunk TA for Windows (&lt;A href="https://splunkbase.splunk.com/app/742)" target="_blank"&gt;https://splunkbase.splunk.com/app/742)&lt;/A&gt;&amp;nbsp;or Splunk TA for nix (&lt;A href="https://splunkbase.splunk.com/app/833)," target="_blank"&gt;https://splunkbase.splunk.com/app/833),&lt;/A&gt;&amp;nbsp;remembering to enable inputs that by default are disabled.&lt;/P&gt;&lt;P&gt;Having those logs, youcan create your own searches.&lt;/P&gt;&lt;P&gt;The most difficoult is to know what to search, but this isn't a Splunk knowledge.&lt;/P&gt;&lt;P&gt;To understand how to create the search, you can follow the Splunk Search Tutorial&amp;nbsp; (&lt;A href="https://docs.splunk.com/Documentation/SplunkCloud/8.1.0/SearchTutorial/WelcometotheSearchTutorial" target="_blank"&gt;https://docs.splunk.com/Documentation/SplunkCloud/8.1.0/SearchTutorial/WelcometotheSearchTutorial&lt;/A&gt;).&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Wed, 29 May 2024 13:01:22 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Monitoring-Splunk/Setting-up-Alerts-for-basic-things-like-Disk-Space-for-windows/m-p/688992#M10200</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2024-05-29T13:01:22Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alerts for basic things like Disk Space for windows/Unix servers</title>
      <link>https://community.splunk.com/t5/Monitoring-Splunk/Setting-up-Alerts-for-basic-things-like-Disk-Space-for-windows/m-p/688996#M10201</link>
      <description>&lt;P&gt;Hi Gcusello&lt;/P&gt;&lt;P&gt;Thanks for the information, Forwarders are installed on all servers currently, its just setting up the searches are my colleague is away for the week and i just trying to set up some basic alerts, thanks for your advice&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 29 May 2024 13:14:00 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Monitoring-Splunk/Setting-up-Alerts-for-basic-things-like-Disk-Space-for-windows/m-p/688996#M10201</guid>
      <dc:creator>pc591f</dc:creator>
      <dc:date>2024-05-29T13:14:00Z</dc:date>
    </item>
    <item>
      <title>Re: Setting up Alerts for basic things like Disk Space for windows/Unix servers</title>
      <link>https://community.splunk.com/t5/Monitoring-Splunk/Setting-up-Alerts-for-basic-things-like-Disk-Space-for-windows/m-p/688997#M10202</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/267298"&gt;@pc591f&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;check if the add-ons I mentioned are installed and if the inputs that takes the information you need are enabled.&lt;/P&gt;&lt;P&gt;If yes, you have only to create your searches.&lt;/P&gt;&lt;P&gt;if not, you haven't the information for your Use Cases.&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Wed, 29 May 2024 13:15:58 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Monitoring-Splunk/Setting-up-Alerts-for-basic-things-like-Disk-Space-for-windows/m-p/688997#M10202</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2024-05-29T13:15:58Z</dc:date>
    </item>
  </channel>
</rss>

