Hi everyone, I'm looking for a search, that shows me when the health status of splunkd is changing from green to yellow or red...
Would that be possible?
Try this - https://docs.splunk.com/Documentation/Splunk/8.2.2/RESTREF/RESTintrospect#server.2Fhealth.2Fsplunkd....
An upvote would be appreciated if this reply helps!
View solution in original post
you can use this rest API - Introspection endpoint descriptions - Splunk Documentation
| rest splunk_server=local "/services/server/health/splunkd" | table health
Thank you very much! That's a good one. Would also be possible to get which service has a warning or error?