Splunk ITSI

How do you monitor availability in Splunk ITSI?

RomeSplunk123
Explorer

Hi we are using different types of tools to monitor our infrastructure and i am trying to get the data from multiple tools and feed into Splunk ITSI.  I am using Zenoss and AppDynamics to send logs and metrics to Splunk.

Unfortunately there are some challenges I am running into.

It's very difficult to prep the Zenoss and AppD logs/metrics to be consumed by Splunk in ITSI.

We have yet not been able to define KPI for server availability (Device PING up/down) and Service/Process down, Port down, individual utilization etc….as without getting and normalizing all Zenoss and AppD data into Splunk, ITSI cannot be successful.

In Splunk, we are missing KPI’s for PING/Availability, Processes, Port, Interface utilization, SWAP utilization in %
Only meaningful KPI we are getting in Splunk is LoadAvg, CPU utilization in % and Memory utilization in%.

Is there anyway to monitor this other data in Splunk ITSI?

Note I know for example in Solar Winds and in New Relic there is a way to monitor availability..  Has anyone ran into this similar issues?  Or should I be using different tools for ping/availability, interface utilization, etc... 

If that's the case is anyone using ITSI to link back to other tools?   

 

0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...