Monitoring Splunk

How to identify network traffic sent from indexers and from search head to user?

diegosainz
Path Finder

Is there a way in splunk to identify how much network traffic is being sent from the indexers (not just how much is indexed)? In addition, can I find a rough estimate of traffic from search head to user? I am not sure if Splunk logs this, but I was hoping.

Tags (2)

somesoni2
Revered Legend

There is a Splunk SOS app (http://splunk-base.splunk.com/apps/29008/sos-splunk-on-splunk) which provide so many statistical data about splunk instance, and I believe Network volume is one the metrics it reports on. Worth checking out.

Get Updates on the Splunk Community!

Introducing the Splunk Community Dashboard Challenge!

Welcome to Splunk Community Dashboard Challenge! This is your chance to showcase your skills in creating ...

Built-in Service Level Objectives Management to Bridge the Gap Between Service & ...

Wednesday, May 29, 2024  |  11AM PST / 2PM ESTRegister now and join us to learn more about how you can ...

Get Your Exclusive Splunk Certified Cybersecurity Defense Engineer Certification at ...

We’re excited to announce a new Splunk certification exam being released at .conf24! If you’re headed to Vegas ...