Splunk Search

How to build a search that shows the uptime of Splunk and the host reporting to Splunk?

himapate
Explorer

I am required to build a search which will show the uptime of all my Splunk components over a period of one month.
Also I am required to build a search for the host reporting to Splunk

0 Karma

martin_mueller
SplunkTrust
SplunkTrust

The /services/server/info REST endpoint has a startup_time field, call that periodically for every splunk component and index it. Then you can build any report you like off that data, over any time range.

0 Karma
Get Updates on the Splunk Community!

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...

Introducing the 2024 Splunk MVPs!

We are excited to announce the 2024 cohort of the Splunk MVP program. Splunk MVPs are passionate members of ...

Splunk Custom Visualizations App End of Life

The Splunk Custom Visualizations apps End of Life for SimpleXML will reach end of support on Dec 21, 2024, ...