I'm evaluating Splunk's utility to replace Solarwinds - I find that SW is extremely clunky to configure what I consider a basic hard disk failure alert. We have HP Proliant servers at present and will be moving to Supermicro servers in the future.
I want to configure Splunk to report on HDD failures - when the light goes red on the drive, Splunk notifies us. I cannot for the life of me find how to make this happen in the documentation, answers, wiki, etc. Can someone point me at this?
Proliant can send SNMP Traps --> log them in a log file, read it using Splunk Fowraders, obviously you need to have some understanding of SNMP. I am not sure but check if the alerts can be output in any other form .
Its simple with any such customization - you need to have good understanding of MIB's (trap MIB's).
How does the device report failures? Does it have a log file or does it report to one of the OS logs?
What OS is running on the servers?