Dashboards & Visualizations

Simple check if the OS (Windows) is still running or not

timospringer
New Member

Hello,

I want a dashboard where I can see if the OS on a Windows machine is still running or got shutdown/crashed.
My Idea was:
If there is no no data for 20 minutes there should be an alert that something is wrong.

I'm thankful for every bit of help!

Best regards

Timo

0 Karma

krishnarajapant
Path Finder

Hi,

Try to check Forwarder health app, you can get an idea on search queries you can use which you can use for any other generic purpose.

-Krishna Rajapantula

0 Karma

domenico_perre
Path Finder

Another way to check if splunk is down is to search your _internal index for phone homes from that host. Or a powers hell script to perform a test-connection against the host as a scripted input

0 Karma
Get Updates on the Splunk Community!

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...

[Live Demo] Watch SOC transformation in action with the reimagined Splunk Enterprise ...

Overwhelmed SOC? Splunk ES Has Your Back Tool sprawl, alert fatigue, and endless context switching are making ...

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us on ...