Monitoring Splunk

Monitoring Splunk
Community Activity
marksheinbaum
The Monitoring Console uses metrics data provided by servers with a splunk forwarder installed. The metrics data appe...
by marksheinbaum Explorer in Monitoring Splunk 02-04-2025
0 2
0
2
Dikshi
failed to start kv store process. see mongod.log and splunkd.log for details.@Splunk
by Dikshi Loves-to-Learn Lots in Monitoring Splunk 02-04-2025
0 2
0
2
eramirezmx
Hi, we are a splunk partner previously Appdynamics partner.  In Appdynamics we had a solution to monitor IBM Z, howev...
by eramirezmx Engager in Monitoring Splunk 01-31-2025
0 3
0
3
danielbb
Introspection seems to give me the data.mount_point only for "/" and not for the other file systems that I can see vi...
by danielbb Motivator in Monitoring Splunk 01-28-2025
0 1
0
1
Sqig
Hi. I have been struggling with getting to the root of some performance problems on our pool of search heads...which...
by Sqig Path Finder in Monitoring Splunk 01-26-2025
2 6
2
6
AShwin1119
we have a SH cluster with 3 SH which is collecting data with indexer cluster having 3 indexers. Now the problem is da...
by AShwin1119 Explorer in Monitoring Splunk 01-25-2025
0 3
0
3
RDumbeck
i have a script that is currently executing on all search heads.  Is there a way to execute on only the current capta...
by RDumbeck Explorer in Monitoring Splunk 01-22-2025
0 6
0
6
loknath
Hello Everyonethis is how iam getting error massage , while forwarding data from universal forwarder to indexer , Thi...
by loknath Loves-to-Learn in Monitoring Splunk 01-17-2025
0 2
0
2
cfernaca
Hi,Looking at the activity of the Splunkd threads on the indexers, I've seen in the monitoring console that sometimes...
by cfernaca Explorer in Monitoring Splunk 01-16-2025
0 3
0
3
dude49
Search Head GUI is not working. Found error in the splunk.d logs, not sure if it pertains to why gui is down. Anyone ...
by dude49 Explorer in Monitoring Splunk 01-14-2025
0 3
0
3
MrBLeu
01-09-2025 17:01:37.725 -0500 WARN  TcpOutputProc [4940 parsing] - The TCP output processor has paused the data flow....
by MrBLeu Loves-to-Learn in Monitoring Splunk 01-10-2025
0 3
0
3
MrBLeu
01-09-2025 17:30:30.169 -0500 INFO  PeriodicHealthReporter - feature="TCPOutAutoLB-0" color=red indicator="s2s_connec...
by MrBLeu Loves-to-Learn in Monitoring Splunk 01-09-2025
0 3
0
3
JohnEGones
Hi all,Do any of you all run into issues where the bundle replication keeps timing out and splunkd.log references inc...
by JohnEGones Communicator in Monitoring Splunk 01-09-2025
0 1
0
1
Gorwinn
Hello All!  I am trying to discard a certain event before the Indexers Ingest it using keyword envoy. Below is an exa...
by Gorwinn Observer in Monitoring Splunk 01-08-2025
0 4
0
4
the_wolverine
I'm trying to understand the compression numbers provided by Splunk. Given a compression of, say, 40%, on a volume o...
by the_wolverine Champion in Monitoring Splunk 01-08-2025
0 11
0
11
hrawat
FYI, it's possible if you have HF => third party s2s => indexer.
by hrawat Splunk Employee Splunk Employee in Monitoring Splunk 01-08-2025
0 5
0
5
inessa40408
Hello Splunkers  Have any of you worked with log files of Cisco equipment:- AP 9130- WiFi Controller 9840 I am inter...
by inessa40408 Explorer in Monitoring Splunk 01-07-2025
0 3
0
3
jiaminyun
1.Problem descriptionThe current production environment has encountered incomplete data returned by using the query m...
by jiaminyun Path Finder in Monitoring Splunk 01-06-2025
0 1
0
1
hectorvp
 In which situation the persistent queue would be used in UF, only if indexer is slow in writing or is down for a lon...
by hectorvp Communicator in Monitoring Splunk 12-27-2024
1 4
1
4
CyberWolf
Splunkersi thought i had an search to detect and alert when a sourcetype don't sent logs, but i found out that i may ...
by CyberWolf Path Finder in Monitoring Splunk 12-26-2024
0 5
0
5
r_s01
Trying to get success and failure status count using below query but its not filtering out the duplicate URLs, Can so...
by r_s01 Explorer in Monitoring Splunk 12-23-2024
0 5
0
5
inventsekar
Dear Splunk Dev team, One more simple typo issue: Splunk fresh install 9.4.0 (last week's version 9.3.2 also had this...
by SplunkTrust SplunkTrust in Monitoring Splunk 12-20-2024
0 2
0
2
Amoreuser
Hello,I just wanted to know more detailed information so I opened the case.About Alert settings.I set  Threshold '90'...
by Amoreuser New Member in Monitoring Splunk 12-16-2024
0 2
0
2
danielbb
We fail again and again these days when we have major spikes in ingestion, primarily with HEC. What would be a good a...
by danielbb Motivator in Monitoring Splunk 12-13-2024
0 1
0
1
Mshah26
Hello,We attempted to upgrade Splunk OTEL on the cluster using the helm3 upgrade command, but encountered the followi...
by Mshah26 Engager in Monitoring Splunk 12-09-2024
1 1
1
1
Get Updates on the Splunk Community!

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Laser Bananas and Edge Hubs: Exploring Operational Technology (OT) Data Through a ...

  OT is a different environment to traditional IT and can have interesting challenges when interfacing the ...

Event Series: Mastering AI Tokenomics and Splunk Agent Observability

Beyond the Black Box: Correlating AI Performance and Tokenomics with Splunk Agent Observability   As ...
Top Solution Authors