Splunk® Enterprise

Distributed Deployment Manual

Download manual as PDF

Splunk version 4.x reached its End of Life on October 1, 2013. Please see the migration information.
This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Download topic as PDF

Drill for details

In addition to the dashboard, the Deployment Monitor app includes several other pages with detailed information about your deployment components. You can reach these pages from links near the top of the dashboard:

  • All forwarders. This page lists all forwarders in the system and provides basic information about each of them. You can click on any forwarder in the list to drill down to a detail page, which includes a wide variety of information and statistics, including charts of data volume and events per second over time. Missing forwarders are removed automatically from the list, sometime in the 24-hour period after they go missing.
  • All indexers. This page lists all indexers in the system and provides overview information on each. You can drill down on each indexer to see more information, including top source types.
  • All source types. This page lists all source types being indexed and provides overview information for each. You can drill down on each source type to see more information.
  • License usage. This page provides an overview of licensing usage information. You can look at cumulative bytes over selectable time range by source type. You can also view bytes received and usage statistics by source type, source, host, forwarder, indexer, or license pool. For more information on this page, see "Manage your licenses" in the Admin manual.
  • License report. This page provides information on daily license usage over the last 60 days. For more information on this page, see "Manage your licenses" in the Admin manual.

Here’s an example of a drilldown page for a forwarder. The other drilldown pages are equally rich in information:

Deploy deploymonitor forwarder detail.png

Troubleshoot your deployment
About deployment server

This documentation applies to the following versions of Splunk® Enterprise: 4.3, 4.3.1, 4.3.2, 4.3.3, 4.3.4, 4.3.5, 4.3.6, 4.3.7

Was this documentation topic helpful?

Enter your email address, and someone from the documentation team will respond to you:

Please provide your comments here. Ask a question or make a suggestion.

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters