Splunk® Content Packs for ITSI and IT Essentials Work

Splunk Content Packs for ITSI and IT Essentials Work

Acrobat logo Download manual as PDF


Acrobat logo Download topic as PDF

About the Content Pack for Monitoring Splunk as a Service

The Content Pack for Monitoring Splunk as a Service provides OS and application-level monitoring of your Splunk Enterprise environment. It includes services and KPIs to monitor a fully distributed single deployment of Splunk Enterprise. All operating system metrics are obtained from introspection and all KPIs are obtained from internal logs and REST APIs. This content pack is not intended for monitoring of Splunk Cloud Platform deployments.

In ITSI, a service is a logical mapping of IT objects that applies to your business goals. This content pack helps you create services that model the different pieces of your Splunk Enterprise environment, including search heads, indexers, and search head clusters. ITSI services contain KPIs (Key Performance Indicators) which make it possible to monitor service health, perform root cause analysis, and receive important alerts when things change.

This content pack provides the ability to monitor various aspects of your Splunk architecture, including the forwarder, indexer, license, and search tiers, as well as premium apps. The following image shows the services provided in this content pack:

SatSservicetree2.png


On-premises installation

On-premises users currently need to download the embedded backup ZIP file from the installation steps in the documentation and restore it in ITSI using the backup/restore functionality. The Content Library will be made available to on-premises users in a future release. See the installation instructions for this content pack to access the ZIP file.

Contents

This content pack contains the following objects and object types:

Object type Description
ITSI services 41 services that represent your Splunk deployment. For a breakdown of the KPIs within each service, see KPI reference for the Content Pack for Monitoring Splunk as a Service.
Service templates Two service templates for Splunk instance and OS metrics.
KPI base searches 33 KPI base searches used by the KPIs in the various services.

Deployment requirements

Use the following table to determine ITSI version compatibility with various versions of the Content Pack for Monitoring Splunk as a Service:

Content pack version ITSI version
2.0.1 4.4.5 and higher
2.0.0 4.4.5 and higher
1.1.0 4.4.4 - 4.5.0
1.0.0 4.2.1 - 4.4.3

Additional resources

Last modified on 11 October, 2021
PREVIOUS
Install and configure the Content Pack for Monitoring Pivotal Cloud Foundry
  NEXT
Release notes for the Content Pack for Monitoring Splunk as a Service

This documentation applies to the following versions of Splunk® Content Packs for ITSI and IT Essentials Work: current


Was this documentation topic helpful?

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters