Getting Data In

Why would indexers in our indexer cluster suddenly start consuming 100% CPU?

manja054
Explorer

We have an indexer clustering Splunk environment, and recently, all our indexers are consuming 100% CPU. Not sure what will be the issue.

Kindly suggest

0 Karma

woodcock
Esteemed Legend

Are you using Real-Time searches? This will totally lock 1 core on every server.
Have you recently started Accelerating searches? The Indexer CPU cost can add up very quickly and has a temporary "backfill" cost that is very noticeable.

Get Updates on the Splunk Community!

Splunk App for Anomaly Detection End of Life Announcment

Q: What is happening to the Splunk App for Anomaly Detection?A: Splunk is officially announcing the ...

Aligning Observability Costs with Business Value: Practical Strategies

 Join us for an engaging Tech Talk on Aligning Observability Costs with Business Value: Practical ...

Mastering Data Pipelines: Unlocking Value with Splunk

 In today's AI-driven world, organizations must balance the challenges of managing the explosion of data with ...