Monitoring Splunk

Measuring Splunkd Uptime

rgilliam01
New Member

Looking for a way to measure splunkd service uptime, and alert on when it's down. Not so much worried about system uptime itself, just want to look at measuring splunkd uptime.

0 Karma

woodcock
Esteemed Legend

You can run this search on your most widely peered Search Head (usually your Monitoring Console) and then check the responding peers against a splunk_infrastructure_hosts.csv lookup and then alert if any are not showing:

|rest/services/server/info

lloydknight
Builder

If your splunk is running on Unix systems, try installing the unix and linux add-on app then enable the script that captures the uptime of the processes. Then create a gentimes search that will alert you when the process is not running since there will be no logs that will indicate the process is down I believe.

0 Karma
Get Updates on the Splunk Community!

Splunk Observability Cloud | Unified Identity - Now Available for Existing Splunk ...

Raise your hand if you’ve already forgotten your username or password when logging into an account. (We can’t ...

Index This | How many sides does a circle have?

February 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

Registration for Splunk University is Now Open!

Are you ready for an adventure in learning?   Brace yourselves because Splunk University is back, and it's ...