Has anyone integrated with Splunk from the controller and used extra parameters? I have tried adding index=* as a parameter, but when Splunk query page opens the extra parameter is not part of the search string.
We have an Idea Exchange on the Community. Here are the search results for anyone mentioning Splunk - feel free to check it out and give your vote to any of the ideas that match your request.
If you don't see one, feel free to create your own! You can check out the Idea Exchange Submission Guidelines here for more info.
Unfortunately, this integration is useless in a large organization that has a huge splunk and Appd footprint. If there was a way pass AppDynamics variables/tokens in the query string, it would be helpful. Something like, node name, app name, etc. This would provide the ability to further refine the query to specific data elements. Right now, it only has one URL and Parms that is common for ALL AppD apps.
Hi @Marcie.Sirbaugh,
Thanks for asking your question on the Community. While I did not see anything specific in our AppD Documentation about extra parameters, I'd like to share it in case you find something valuable in it.
Here is also a link to Splunk's Documentation: https://docs.splunk.com/Documentation/Splunk
Please do let me know if you find anything helpful.
Ended up getting this to work as query parameter:
q=%20(index=*)
Hello Mercie,
We also have both tools. I would love to know how this Splunk can be integrated with AppD also. please share any helpful links/ docs. I would like to understand the initial process if you can share anything that would be very helpful. Thanks!
Please see my first reply. I linked to an AppD Docs page and a Splunk one.
Hi @Marcie.Sirbaugh,
Thanks for following up and sharing your solution!