Splunk IT Service Intelligence

Need docs for enhance monitoring using splunk

imamsynch
New Member

Hi,

I have joined recently as splunk architect. Have been assigned to work on enhancement of monitoring. We have deployed itsi on our environment. Need to know how best to enable monitoring for different areas such as network, server and applications etc.
Any docs which would be of help, please let me know.

0 Karma
1 Solution

skalliger
Motivator

Hi,

for a succesful ITSI deployment, you might want to consider getting some PS involved. Premium solutions like ITSI shouldn't be "just installed" and started to work on without proper planning before. ITSI brings some key concepts with it, like Correlation Searches, KPIs, Multi-KPI alerting, Predictive Analytics, Entities and other things likes teams, glass tables.

The docs are great in explaining things but they're not meant as an implementation guide of how to map your business services to Splunk. To understand certain features, this docs page will get you started. Go from there. I still suggest to get Splunk or a partner involved or ITSI will could end up in a messed up way after some time. 🙂

Skalli

View solution in original post

0 Karma

skalliger
Motivator

Hi,

for a succesful ITSI deployment, you might want to consider getting some PS involved. Premium solutions like ITSI shouldn't be "just installed" and started to work on without proper planning before. ITSI brings some key concepts with it, like Correlation Searches, KPIs, Multi-KPI alerting, Predictive Analytics, Entities and other things likes teams, glass tables.

The docs are great in explaining things but they're not meant as an implementation guide of how to map your business services to Splunk. To understand certain features, this docs page will get you started. Go from there. I still suggest to get Splunk or a partner involved or ITSI will could end up in a messed up way after some time. 🙂

Skalli

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...