Deployment Architecture

monitor linux processes

karthikbalakris
Explorer

hi all,
How do i monitor the processes that are running on Linux similar to monitoring services in windows. in windows i use WMI:SERVICES to do. but i am not sire of the correct way to do it on Linux processes. Kindly help.

Tags (3)

dwaddle
SplunkTrust
SplunkTrust

As you know, Linux does not have WMI. The closest thing that is easy to the deploy is the Splunk App for Linux and Unix. This supports a ps data input which you can use to monitor processes.

If this app doesn't give you exactly what you want out of the box, you can always roll your own scripted input.

martin_mueller
SplunkTrust
SplunkTrust

The *NIX app has a number of useful inputs, such as scripts calling top and ps periodically.

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Continue Your Federation Journey: Join Session 3 of the Bootcamp Series

To help practitioners build a stronger foundation, we launched the Data Management & Federation ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Casting Call: Compete in Cyber Games

Lights, Camera, SecOps: Apply to Compete in Cyber Games     Think you have what it takes to beat the clock? ...