Alerting

What would be 7-10 Critical Alerts Admins can setup on All Splunk / ES servers to be alerted about ?

SamHTexas
Builder

What would be 7-10 Critical Alerts Admins can setup on All Splunk / ES servers to be alerted about ? During Daily checks.

Labels (1)
Tags (1)
0 Karma

gjanders
SplunkTrust
SplunkTrust

I think this is going to vary a lot depending on your environment.

 

In alerts for splunk admins https://splunkbase.splunk.com/app/3796/ I have high in the description for anything I considered very important and a low chance of false alarm.

 

The more recent alerts and reports are used to find issues and tend to summarize more where the older alerts are very specific 

0 Karma
Get Updates on the Splunk Community!

Prove Your Splunk Prowess at .conf25—No Prereqs Required!

Your Next Big Security Credential: No Prerequisites Needed We know you’ve got the skills, and now, earning the ...

Splunk Observability Cloud's AI Assistant in Action Series: Observability as Code

This is the sixth post in the Splunk Observability Cloud’s AI Assistant in Action series that digs into how to ...

Splunk Answers Content Calendar, July Edition I

Hello Community! Welcome to another month of Community Content Calendar series! For the month of July, we will ...