All Apps and Add-ons

How to monitor localhost thru REST API Modular Input for Splunk?

mavrodiev
New Member

Hi All,

I am trying to monitor the output of localhost thru REST API Modular Input of Splunk.

http://localhost:8888/services/health

Purpose is to have the health check results shown in JSON format. Screenshot from Postman:
{
"BPS": {
"healthy": false,
"message": "Inactive RMI HTTP service(s) : [/BatchExecutionService], [/BusinessExecutionService], [/ChannelDataLookupService], [/RobotExecutionService], [/WebBusinessExecutionService], [/WebExternalExecutionService]. (503)"
}
}

Once the results are shown on SPlunk, I will configure an alert in case healthy state is different that READY. There are more than 20 hosts consolidated into a single index and they are communicating with central server via SplunkUniversalForwarders.
Currently I am testing the scenario locally on my own laptop with local instnace of Splunk and application is running also on my box.

Do you have any ideas if this scenario is possible for impementation?

Cheers,
Konstantin

0 Karma
Get Updates on the Splunk Community!

Splunk ITSI & Correlated Network Visibility

  Now On Demand   Take Your Network Visibility to the Next Level In today’s complex IT environments, ...

Community Content Calendar, August edition

In the dynamic world of cybersecurity, staying ahead means constantly solving new puzzles and optimizing your ...

Pro Tips for First-Time .conf Attendees: Advice from SplunkTrust

Heading to your first .Conf? You’re in for an unforgettable ride — learning, networking, swag collecting, ...