Splunk Search

Realtime search results

AaronMoorcroft
Communicator

Hey Guys

So Im looking for a search that will show me either in a graph, txt, chart doesnt matter really the realtime stats of systems logging events.

so for example if I have 1000 servers and for some reason 1 has started logging through the roof due to some random error how can I search all systems and have that displayed easy and quickly to show say the top 10 systems logging high volumes.

Thanks in advance.

Tags (1)
0 Karma

MuS
Legend

Hi AaronMoorcroft

have a look at the Deployment Monitor within this App you can find such searches and views to display forwarders which are sending more then expected.

hope this helps...

cheers, MuS

Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...