After the future removal of the classic playbook editor, your existing classic playbooks will continue to run, However, you will no longer be able to visualize or modify existing classic playbooks.
For details, see:
Monitor the health of your system
Use the System Health page to view a summary of your instance. The System Health page includes the following information:
- Running status of processes
- Resource consumption
- Health and status of critical processes
Use the System Health page as a starting point to begin troubleshooting issues. Splunk support might ask for the results of this page to start a troubleshooting investigation.
Perform the following tasks to get to the System Health page:
- From the main menu, select Administration.
- Select System Health > System Health.
The following image shows the System Health page for a standalone, non-clustered instance. Additional selections such as a selector for individual nodes and ClusterD statistics are available on the System Health page in a clustered deployment. A clustered deployment doesn't have the Database Disk Space panel since the database in a cluster lives on a different host.
The top row of graphs shows you the status of the following system-wide resources:
- Memory usage
- Load average
- Disk usage
Each row after the top row represents the individual system processes important to . Verify that each process has a green Running status icon. Click Restart if you need to restart any one of the individual processes.
runs on top of Linux, so these graphs can be interpreted as you might on any Linux system. On a fairly idle system, there might be a significant amount of free memory, unused swap, and a lower load compared to the number of allocated CPU cores. There might also be more free disk space for the database and files.
The processing daemons IngestD
, DecideD
, WorkflowD
, and ActionD
perform various scheduling, decision, and management functions as well as critical background functions. All four must be running in order for to work properly. also relies on HTTPD
and Postgres
, which is the database.
If you registered a mobile device and Enable Mobile App is on, you can see the following behaviors in :
- The
ProxyD
daemon starts automatically. TheWatchdogD
daemon keeps track of the toggle switch position and adds or removes theProxyD
daemon from the system startup list depending on the status. - The System Health page also includes usage statistics for the
ProxyD
daemon. See Enable or disable registered mobile devices for information about the Enable Mobile App toggle.
Enable or disable registered mobile devices | View how much data is ingested in using ingestion summary |
This documentation applies to the following versions of Splunk® SOAR (On-premises): 5.3.1, 5.3.2
Feedback submitted, thanks!