Archive

What are the best practice searches for network infrastructure monitoring?

Ultra Champion

I'd like to implement some basic searches for network infrastructure monitoring without getting caught up in the differences between sourcetypes and field names.

Are there any basic searches that provide middleware monitoring without me having to deal with the complexities of the sourcetype differences? Something akin to Network Traffic in the Common Information Model, perhaps?

0 Karma
1 Solution

Ultra Champion

Replaced the answer with its new homes.

0 Karma

Ultra Champion

Added guidance on Alerts

0 Karma
Don’t Miss Global Splunk
User Groups Week!

Free LIVE events worldwide 2/8-2/12
Connect, learn, and collect rad prizes
and swag!