Splunk Enterprise

Need help with SPLs to find list of my Splunk Instances, FWs & Indexers. Need Splunk version & machine names. Thx a mill

SamHTexas
Builder

Please help with SPLs to find list of my Splunk server instances, FWs & Indexers. Need Splunk version & machine names & IPs. Thx a million in advance. What is the best order to upgrade them all to Splunk 8.2.2.? 

Labels (1)
Tags (1)
0 Karma

SamHTexas
Builder

Thanks very much bro. for this. This SPL lists the FWs & their IPs only. Do u know how to get a list of Indexers & Splunk instances like Deployment server, Cluster master & etc plus their Splunk version & IPs? Thanks very much in advance. 

Tags (1)
0 Karma

ashvinpandey
Contributor

@SamHTexas Try the below query and add the other required fields you want:

index=_internal source=*metrics.log* group=tcpin_connections 
| dedup hostname 
| table _time hostname os version sourceIp fwdType destPort ssl 

Regarding upgrade please find the below official splunk documentation link for v8.2:
https://docs.splunk.com/Documentation/Splunk/8.2.2/Installation/HowtoupgradeSplunk 

Also, If this reply helps you, an upvote would be appreciated.

0 Karma

SamHTexas
Builder

This is super bro. Thank u. What does the ssl  (false) mean under the ssl column on the far right side? Thank u

Tags (1)
0 Karma
Get Updates on the Splunk Community!

More Ways To Control Your Costs With Archived Metrics | Register for Tech Talk

Tuesday, May 14, 2024  |  11AM PT / 2PM ET Register to Attend Join us for this Tech Talk and learn how to ...

.conf24 | Personalize your .conf experience with Learning Paths!

Personalize your .conf24 Experience Learning paths allow you to level up your skill sets and dive deeper ...

Threat Hunting Unlocked: How to Uplevel Your Threat Hunting With the PEAK Framework ...

WATCH NOWAs AI starts tackling low level alerts, it's more critical than ever to uplevel your threat hunting ...