Splunk Enterprise

Access indexer cluster config ( /manager-apps/local ) via REST

NoSpaces
Communicator

Hello to everyone!
I want to build a dashboard with which I can access information from config files of indexer cluster
I know that the typical scenario to access config files is using REST endpoints "/services/configs/conf-*"
But as I understood, these endpoints show only configuration files stored under /system/local/*.conf
Is it a way to access config files stored under /manager-apps/local ?

Labels (1)
0 Karma
1 Solution

dural_yyz
Builder

https://splunkbase.splunk.com/app/3696

Get this app and place it on your DMC as best practice.  The rest calls will access anything that is a search peer.  The DMC node typically has your entire environment as a search peer in order to monitor the environment.  The app does suggest install on a search head, but you might miss access to CM, HF, etc.

Of course if you have a single node cluster then there is no need to worry about where you install.  Follow the instructions for a cloud based environment.

View solution in original post

0 Karma

dural_yyz
Builder

https://splunkbase.splunk.com/app/3696

Get this app and place it on your DMC as best practice.  The rest calls will access anything that is a search peer.  The DMC node typically has your entire environment as a search peer in order to monitor the environment.  The app does suggest install on a search head, but you might miss access to CM, HF, etc.

Of course if you have a single node cluster then there is no need to worry about where you install.  Follow the instructions for a cloud based environment.

0 Karma

NoSpaces
Communicator

Thanks for the valuable advertising!
I don't need this app in general, but I can use queries from dashboard as examples to resolve my particular case.

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...