Dashboards & Visualizations

Integrating Splunk Dashboard with Database

htpalli
Engager

Hi Team,

I am very new to Splunk Dashboard.

Do you think we can form some SQL queries from the backend for any of the tasks below so that we can capture them via Splunk dashboard?

1. API Service UP/ Down

2. Response Time by UI API

3. Frequent Users

4. CPU Utilization

5. Mem Utilization

6. Login Statistics

7. API Error Report

Database we use: HDFS

 

Regards,

Harish

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @htpalli,

if you have these logs in a DB table, you can use DB-Connect to extract and save them in a Splunk Index.

If you already have these information in a log file, you could read and index it.

In both cases you can run a search to display what you need in a dashboard.

Remember that the only limitation in Splunk is the availability of data: if you have them (in almost every format) you can index, search and display them in a dashboard.

Ciao.

Giuseppe

htpalli
Engager

Thank you @gcusello for your quick response.

I have worked extensively on Oracle database where we can track user activities from V$SESSION/V$SQL datastores or any other DBA related tables.

However, I am using HDFS in my current project. Wondering if you have any idea on which tables we can reference to get info on (1) Response Time by UI API (2) Frequent Users (3) Login Statistics.

This info helps to integrate the SQL into Splunk so that it can monitor and show the results via Dashboard.

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @htpalli,

sorry! I don't know how Oracle stores this information and probably few or none in this Community have this information, you should see in Oracle documentation or Community.

When you'll have the query to extract the wanted data, you'll be able to use it in DB-Connect or create a scheduled query to save data in a file to read using the Universal Forwarder.

The first solution is easier but requires an access to the DB to execute the query.

the second one requires the presence of a Universal Forwarder on the Oracle database server but is stronger for security.

Ciao.

Giuseppe

0 Karma
Get Updates on the Splunk Community!

Splunk Observability Cloud’s AI Assistant in Action Series: Analyzing and ...

This is the second post in our Splunk Observability Cloud’s AI Assistant in Action series, in which we look at ...

Elevate Your Organization with Splunk’s Next Platform Evolution

 Thursday, July 10, 2025  |  11AM PDT / 2PM EDT Whether you're managing complex deployments or looking to ...

Splunk Answers Content Calendar, June Edition

Get ready for this week’s post dedicated to Splunk Dashboards! We're celebrating the power of community by ...