Monitoring Splunk

How to identify network traffic sent from indexers and from search head to user?

diegosainz
Path Finder

Is there a way in splunk to identify how much network traffic is being sent from the indexers (not just how much is indexed)? In addition, can I find a rough estimate of traffic from search head to user? I am not sure if Splunk logs this, but I was hoping.

Tags (2)

somesoni2
Revered Legend

There is a Splunk SOS app (http://splunk-base.splunk.com/apps/29008/sos-splunk-on-splunk) which provide so many statistical data about splunk instance, and I believe Network volume is one the metrics it reports on. Worth checking out.

Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...