Splunk Enterprise

How to fix the red health?

airmansavath
Engager

Yes, I'm new to this Splunk stuff and I'm trying to learn and I have a health red and I'm not sure how to fix it and i don't know if it's causing me other issues 

 

here are the list that are marked in red. 

 

splunkd

 

Data Forwarding
Splunk-2-Splunk Forwarding
TCPOutAutoLB-0
File Monitor Input

Ingestion Latency
Real-time Reader-0
 
 
also I'm currently am taking some online courses from Udemy. would anyone  recommend anything else or where to learn?  I'm only asking because these courses are out of date. 
 
 
Labels (2)
0 Karma

stlouissplunk
New Member

i am currently taking udemy classes also and my splunk enterprise health is in the red. who can help me with this?

 

0 Karma

richgalloway
SplunkTrust
SplunkTrust

We can't help you fix what's wrong without knowing what is wrong.  "Red health" could be caused by any of many things (or multiple things).  Click on the read health icon to show the health status and then click on each red icon to get details about what is wrong (or what Splunk thinks is wrong - sometimes it's wrong about that).  Pass on that information and someone should be able to help you fix it.

---
If this reply helps you, Karma would be appreciated.
Get Updates on the Splunk Community!

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...