Splunk Search

Realtime search results

AaronMoorcroft
Communicator

Hey Guys

So Im looking for a search that will show me either in a graph, txt, chart doesnt matter really the realtime stats of systems logging events.

so for example if I have 1000 servers and for some reason 1 has started logging through the roof due to some random error how can I search all systems and have that displayed easy and quickly to show say the top 10 systems logging high volumes.

Thanks in advance.

Tags (1)
0 Karma

MuS
Legend

Hi AaronMoorcroft

have a look at the Deployment Monitor within this App you can find such searches and views to display forwarders which are sending more then expected.

hope this helps...

cheers, MuS

Get Updates on the Splunk Community!

See just what you’ve been missing | Observability tracks at Splunk University

Looking to sharpen your observability skills so you can better understand how to collect and analyze data from ...

Weezer at .conf25? Say it ain’t so!

Hello Splunkers, The countdown to .conf25 is on-and we've just turned up the volume! We're thrilled to ...

How SC4S Makes Suricata Logs Ingestion Simple

Network security monitoring has become increasingly critical for organizations of all sizes. Splunk has ...