There are a few reasons to use the Splunk App for Infrastructure (SAI) over host-specific monitoring solutions. Here are some that come to mind right now:
SAI is great for centralized monitoring of different host types (e.g., Windows and Linux hosts).
SAI uses metrics indexes for metrics storage. This is more efficient than storing metrics in events indexes, and you can use metrics-specific search commands like mstats for data you collect with SAI collection agents. For more info, check out https://docs.splunk.com/Documentation/Splunk/8.0.1/Metrics/Overview.
If you have ITSI, you can integrate entities from SAI with ITSI, and create ITSI services from SAI entities.
... View more