All Apps and Add-ons

How to know if data inputs are enabled/disabled using splunk query?

jincy_18
Path Finder

Hi,

We are using jms app to connect to various MQs. I need to know how I can get the info whether inputs are enabled or disabled via a splunk search query. Not really sure if splund_access.log can be used for this purpose.

Many thanks!

0 Karma
1 Solution

micahkemp
Champion

Check out the output of | rest splunk_server=local /services/data/inputs/all from the search bar of the server in question.

View solution in original post

0 Karma

micahkemp
Champion

Check out the output of | rest splunk_server=local /services/data/inputs/all from the search bar of the server in question.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Automated Threat Analysis: Available in ES Premier

Automated Threat Analysis: Centralize and Accelerate Phishing Investigations in Splunk Enterprise ...

What’s New in Splunk AI: Volume 02

Welcome to the second edition of “What’s New in Splunk AI” where we look at the latest and greatest updates, ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...