Splunk Search

How to get Splunk access statistics

snevarezh
Explorer

We need to provide Splunk user access statistics:

How many user accessed splunk the last month
How many times a specific user acceded to splunk
Top 10 users who acceced to splunk
Top 10 prefered searches

and that kind of reports

Tags (1)
1 Solution

MHibbin
Influencer

There are also some nice features in the S.o.S (Splunk on Splunk) App around user activity. It was released by Splunk and as such is also supported, it's available here http://splunk-base.splunk.com/apps/29008/sos-splunk-on-splunk. Once installed you can then go to "Search >> UI and User Search Activity". It also has a load of other helpful features for troubleshooting.

View solution in original post

MHibbin
Influencer

There are also some nice features in the S.o.S (Splunk on Splunk) App around user activity. It was released by Splunk and as such is also supported, it's available here http://splunk-base.splunk.com/apps/29008/sos-splunk-on-splunk. Once installed you can then go to "Search >> UI and User Search Activity". It also has a load of other helpful features for troubleshooting.

sdwilkerson
Contributor

Snvarezh,

Much of what you are looking for is part of a dashboard built-in to the search app.

  1. Go to the search app
  2. On the top navigation, click on status|search activity and look the the data returned by the listed dashboards

Beyond what is there, you can click on view results to get more detail or otherwise tweak the search to more specifically find what you need.

Best,
Sean

0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Watch Now!   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to leverage ...

More Control Over Your Monitoring Costs with Archived Metrics!

What if there was a way you could keep all the metrics data you need while saving on storage costs?This is now ...

New in Observability Cloud - Explicit Bucket Histograms

Splunk introduces native support for histograms as a metric data type within Observability Cloud with Explicit ...