Deployment Architecture

monitor linux processes

karthikbalakris
Explorer

hi all,
How do i monitor the processes that are running on Linux similar to monitoring services in windows. in windows i use WMI:SERVICES to do. but i am not sire of the correct way to do it on Linux processes. Kindly help.

Tags (3)

dwaddle
SplunkTrust
SplunkTrust

As you know, Linux does not have WMI. The closest thing that is easy to the deploy is the Splunk App for Linux and Unix. This supports a ps data input which you can use to monitor processes.

If this app doesn't give you exactly what you want out of the box, you can always roll your own scripted input.

martin_mueller
SplunkTrust
SplunkTrust

The *NIX app has a number of useful inputs, such as scripts calling top and ps periodically.

Get Updates on the Splunk Community!

Splunk MCP & Agentic AI: Machine Data Without Limits

  Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization ...

Finding Based Detections General Availability

Overview  We’ve come a long way, folks, but here in Enterprise Security 8.4 I’m happy to announce Finding ...

Get Your Hands Dirty (and Your Shoes Comfy): The Splunk Experience

Hands-On Learning and Technical Seminars  Sometimes, you just need to see the code. For those looking for a ...