Splunk Search

How to get data from Monitoring Console into Search head dashboard?

wainwrid
Engager

Hello,

We have a monitoring console that works great. I am able to connect directly to the server containing the console and get everything I need. However, we need to start mixing this data with other dashboards on the search heads. This is where I come up dry.

 

rest splunk_server=local /services/cluster/master/indexes on the (Monitoring Console Server" returns data, unformatted data, but still data.

 

running the below search on the search heads returns nothing. It doesn't error out, just no data is returned
| rest splunk_server=(Monitoring Console Server) /services/cluster/master/indexes

 

Where should I go from here?

Any/all help is appreciated.

 

Thanks!

Labels (1)
0 Karma
Get Updates on the Splunk Community!

Get Your Exclusive Splunk Certified Cybersecurity Defense Engineer at Splunk .conf24 ...

We’re excited to announce a new Splunk certification exam being released at .conf24! If you’re headed to Vegas ...

Share Your Ideas & Meet the Lantern team at .Conf! Plus All of This Month’s New ...

Splunk Lantern is Splunk’s customer success center that provides advice from Splunk experts on valuable data ...

Combine Multiline Logs into a Single Event with SOCK: a Step-by-Step Guide for ...

Combine multiline logs into a single event with SOCK - a step-by-step guide for newbies Olga Malita The ...