Splunk SOAR

Customize Warm Standby Display Message

catherinelam
Explorer

Good morning! Is there a way to update the display message on the Warm Standby instance when users navigate to it?

Labels (1)
0 Karma

phanTom
SplunkTrust
SplunkTrust

@catherinelam I highly doubt it although it's probably somewhere on the system. 

My 1st question would have to be why? No-one should be going to the standby as it should be behind some DNS and/or LB that only sends traffic to the "active" box. 

If in doubt I would ask support as changing this, if possible, may cause issues with the support agreement. 

0 Karma

catherinelam
Explorer

Great point about the DNS. Our concern was that, as brought up by our networking team, there might be a lag in when the DNS record gets updated during the manual switch and during that time we wanted to direct our users to the right URL, if possible. 

I'll reach out to support! It's not a high priority, but I didn't see anything in the UI. Thanks for replying 🙂

0 Karma

phanTom
SplunkTrust
SplunkTrust

Gotcha and no worries, that's what I am here for 😁

If you have an LB that can do some kind of probing for the active box then it shouldn't matter if DNS has an issue as the LB will decide which is "healthy" and the DNS record just points to the LB if that makes sense?

Not done it myself but definitely heard it a few times in the Warm/Standby conversations around automating the failover. 

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...