Monitoring Splunk

Monitoring Splunk
Community Activity
esalesapns2
Our indexers are reporting “server-busy” errors back to the kinesis data firehoses periodically.This is an indication...
by esalesapns2 Communicator in Monitoring Splunk 02-09-2026
0 3
0
3
b17gunnr
Hello folks,I have a compliance control requirement to alert when there is a log ingestion failure to Splunk. The des...
by b17gunnr Path Finder in Monitoring Splunk 02-09-2026
0 6
0
6
marcokrueger
I give my splunk 50GB Mem with max_mem_usage_mb = 50480 in the limits.conf but splunk 5.0.3 gives me a "mvexpand out...
by marcokrueger Path Finder in Monitoring Splunk 02-02-2026
1 15
1
15
loganallen
Hi All, I have SOC metric reporting dashboards for MTTR (mean time to respond) and MTTC (mean time to close) but am s...
by loganallen Loves-to-Learn in Monitoring Splunk 01-31-2026
0 2
0
2
R15
Recently upgraded to 9.2.2 and Historic License Usage panels in the Monitoring Console are now broken. The panels in ...
by R15 Communicator in Monitoring Splunk 01-22-2026
0 4
0
4
Space_Crawler
Hi, I have recently changed the OS hostname, followed by Splunk hostname change on a single node deployment. I am sti...
by Space_Crawler Observer in Monitoring Splunk 12-29-2025
0 3
0
3
SN1
So i have a search which show the indexes that have 0 events last 24hr.  I want to send this result as an alert to mi...
by SN1 Path Finder in Monitoring Splunk 12-12-2025
0 4
0
4
SN1
this message is displaying in the splunkd logs on syslog server.we are forwarding data from syslog server to DMZ serv...
by SN1 Path Finder in Monitoring Splunk 12-03-2025
0 2
0
2
gteccr
Hello, We have been reported that there is an open vulnerability with openssl for SplunkUniversal Forwarder, as descr...
by gteccr Explorer in Monitoring Splunk 11-26-2025
0 7
0
7
maheshnc
 Hello,we have a DMC configured on Splunk Licence Master; I need to enable all the critical resource utilization aler...
by maheshnc Path Finder in Monitoring Splunk 11-13-2025
0 1
0
1
charbelcharro
Hi GuysI am new to Splunk and here is my inquiry, I have 5 KPI lane that monitor/measure different aspect of an Oracl...
by charbelcharro New Member in Monitoring Splunk 11-05-2025
0 2
0
2
vyomsap
We are monitoring a GKE cluster with Splunk OTEL collector Kubernetes cluster receiver pod, and want to skip or exclu...
by vyomsap New Member in Monitoring Splunk 10-29-2025
0 2
0
2
Sandivsu
Dears,Looking for the customer dashboard if it is available with anyone to monitor many things likeplatform health (I...
by Sandivsu Loves-to-Learn Lots in Monitoring Splunk 10-23-2025
0 2
0
2
martaBenedetti
Hi all,I'd like to create an alert that checks whether, as a triggered action of an alert, an email is being sent wit...
by martaBenedetti Path Finder in Monitoring Splunk 10-17-2025
0 0
0
0
splunkreal
Hello, is this query valid to check incoming network traffic to heavyforwarders?index=_internal source=*metrics.log* ...
by splunkreal Influencer in Monitoring Splunk 10-10-2025
0 4
0
4
hrawat
If you have enabled splunk S2S compression, you can skip reading further. compressed = trueTLS 1.3 removed  compressi...
by hrawat Splunk Employee Splunk Employee in Monitoring Splunk 09-20-2025
3 4
3
4
paleewawa
I'm seeing hundreds of these errors in the internal splunkd logs01-16-2025 12:05:00.584 -0600 ERROR UserManagerPro [7...
by paleewawa Explorer in Monitoring Splunk 09-15-2025
0 3
0
3
pmerlin1
Since I migrated splunk to version 9.2.4, I've been getting a lot of error messages from all Splunk servers :WARN Use...
by pmerlin1 Path Finder in Monitoring Splunk 09-15-2025
1 4
1
4
AlexIta95
Good morning,I need to monitor a very long file containing data from 2021 onwards.I'm only interested in data from la...
by AlexIta95 New Member in Monitoring Splunk 09-10-2025
0 3
0
3
dr_juice
Is there any form of automation where we would be able to identify if one of our hosts stopped sending logs to splunk...
by dr_juice Explorer in Monitoring Splunk 09-10-2025
0 1
0
1
isahu
Unable to get the recent logs for today for an production environment. It is throwing an error stating "ERROR [Proper...
by isahu Observer in Monitoring Splunk 08-25-2025
0 3
0
3
M1k3Smith
We have 2 indexers in a cluster and are running 9.4.0I removed an index from the cluster by removing its stanza from ...
by M1k3Smith Explorer in Monitoring Splunk 08-22-2025
0 5
0
5
srek3502
Hi,To implement high availability for the Splunk Search Head Deployer across multiple regions, would it be possible t...
by srek3502 Explorer in Monitoring Splunk 08-15-2025
0 6
0
6
DataWrangler
When running license usage reports by host we are hitting the squash_threshold in server.conf.I've researched this an...
by DataWrangler Explorer in Monitoring Splunk 08-14-2025
0 11
0
11
dineshchoudhary
Hello Guys, We have SCOM on physical box & want to onboard in AppDynamics for monitoring. customer wants to onboard w...
by dineshchoudhary Loves-to-Learn Lots in Monitoring Splunk 08-04-2025
0 4
0
4
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Rounding off the Splunk Dashboard Contest

What does a contest-winning Splunk dashboard look like? In this case, it isn't in a browser tab at all. It ...

A Four Part Event Series: AI + Observability: AI Agents, LLMs, Apps, & Infrastructure

AI + Observability: AI Agents, LLMs, Apps, & Infrastructure The rapid evolution of artificial intelligence ...