Splunk Search

How to set up Splunk Search Queue monitoring

SarahHartt
New Member

We would like to track our Splunk Enterprise Cluster performance to keep an eye on whether we have sufficient resources allocated, as part of this we would like to track average search queue volume and wait time but I have had a hard time finding any way to generate this data. 

Is this data exposed anywhere for searching in Splunk? we are using the MC saturated event queue for the indexers already as well as CPU / Mem usage for both indexers and search heads. 

Labels (1)
0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...