Auto-detect entities using ITSI modules
The modules included with ITSI can help automatically discover entities. For example, when a new server comes online, ITSI can automatically add it as an entity. Entity discovery occurs on a scheduled basis (usually every 4 hours) if the modules included with ITSI are properly configured and the add-ons required for data collection are installed and properly configured.
For example, the OS module automatically detects all the servers that are sending data into the Splunk platform using the Splunk Add-on for Unix and Linux or the Splunk Add-on for Microsoft Windows. Entity types such as OS hosts, virtualization hypervisors, VMs, web servers, database servers, and load balancers can be created and populated as entities in ITSI using module entity discovery searches.
Define a single entity in ITSI
Import entities from a CSV file in ITSI
This documentation applies to the following versions of Splunk® IT Service Intelligence: 4.2.0, 4.2.1, 4.2.2, 4.2.3, 4.3.0, 4.3.1, 4.4.0, 4.4.1