Splunk® Enterprise

Distributed Deployment Manual

Acrobat logo Download manual as PDF

Splunk Enterprise version 6.x is no longer supported as of October 23, 2019. See the Splunk Software Support Policy for details. For information about upgrading to a supported version, see How to upgrade Splunk Enterprise.
This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Acrobat logo Download topic as PDF

Monitor your distributed deployment

You can use the distributed management console to monitor most aspects of your deployment. This topic describes the console dashboards that provide an overview of the entire deployment.

The primary documentation for the distributed management console is the Distributed Management Console Manual.

Deployment-wide dashboards

The distributed management console includes dashboards that provide an overview of the entire deployment, as well as others that drill down deeply into your deployment, focusing on specific features of the deployment, such as indexing or search head clustering. This topic describes the overview dashboards. The manuals that describe specific features cover the dashboards relevant to those features.

For example, for search head clusters alone, the distributed management console provides five dashboards that cover activities such as artifact replication, configuration replication, and app deployment. These dashboards are discussed in the documentation on search head clustering, in the Distributed Search manual. Similarly, dashboards pertinent to indexer clusters or indexing performance are described in the Managing Indexers and Clusters of Indexers manual.

There are three types of dashboards or pages that provide a deployment-wide view:

  • Overview
  • Instances
  • Resource Usage

Overview dashboards

The dashboards that provide an overview of the deployment are located under the Overview menu. They are also the dashboards that appear when you initially start up the console. There are two dashboards:

  • Overview
  • Topology

You toggle between these dashboards by clicking on the Overview or Topology button.

The Overview dashboard specifies the number of indexers, search heads, cluster masters, and license masters. It also includes information on usage and alerts.

The Topology dashboard shows the instances for each component type, and the connections between indexers and search heads. It also provides some high-level information about each instance, such as the indexing rate for indexers and whether an instance is up or down.

Instances page

The Instances dashboard lists all Splunk Enterprise instances in your deployment. For each instance, it also provides information about its basic characteristics and status. You can access it through the Instances menu.

Resource Usage dashboards

There are several Resource Usage dashboards, which you access through the Resource Usage menu. The Resource Usage: Deployment dashboard provides deployment-wide resource information, such as CPU usage, physical memory usage, and disk usage. The other dashboards provide usage information by instance or machine.

See "Resource usage: Deployment" in the Distributed Management Console Manual.

Last modified on 21 September, 2016
Post-deployment activities

This documentation applies to the following versions of Splunk® Enterprise: 6.3.0, 6.3.1, 6.3.2, 6.3.3, 6.3.4, 6.3.5, 6.3.6, 6.3.7, 6.3.8, 6.3.9, 6.3.10, 6.3.11, 6.3.12, 6.3.13, 6.3.14, 6.4.0, 6.4.1, 6.4.2, 6.4.3, 6.4.4, 6.4.5, 6.4.6, 6.4.7, 6.4.8, 6.4.9, 6.4.10, 6.4.11

Was this documentation topic helpful?

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters