Accept License Agreements

This app is provided by a third party and your right to use the app is in accordance with the license provided by that third-party licensor. Splunk is not responsible for any third-party apps and does not provide any warranty or support. If you have any questions, complaints or claims with respect to this app, please contact the licensor directly.

Thank You

Downloading InsightFinder App for Splunk
MD5 checksum (insightfinder-app-for-splunk_174.tgz) c062597b920e0dce9ef7367e30ebf0b2 MD5 checksum (insightfinder-app-for-splunk_173.tgz) 67c5adae557277fdfda81e719e6158bb MD5 checksum (insightfinder-app-for-splunk_172.tgz) 5214dde9d70385da36dbef97a1c6373d MD5 checksum (insightfinder-app-for-splunk_171.tgz) e8d5379e76a6dc12719955d66c970366 MD5 checksum (insightfinder-app-for-splunk_17.tgz) 79e0b9cbe033d7330e8e70aae2c09ea2 MD5 checksum (insightfinder-app-for-splunk_163.tgz) f093a3a7f85b806ce332ca1fbeb1ee00 MD5 checksum (insightfinder-app-for-splunk_162.tgz) 0e7896818c4438541e73c2c262760d94 MD5 checksum (insightfinder-app-for-splunk_161.tgz) 5cf6660da09b9c780c7f157db815418f MD5 checksum (insightfinder-app-for-splunk_16.tgz) 8f856118061bdad85e1ffe53697ae3bc MD5 checksum (insightfinder-app-for-splunk_15.tgz) f5951dc890932b852df4aba63384750b MD5 checksum (insightfinder-app-for-splunk_14.tgz) d07fe4aeba9fca03f3f8193a8af336aa MD5 checksum (insightfinder-app-for-splunk_13.tgz) 9dcd6fbc9d4aa9cca8982ba7852cb331 MD5 checksum (insightfinder-app-for-splunk_12.tgz) ae18ec6c1e767e64e1c599d74fd7ab8a MD5 checksum (insightfinder-app-for-splunk_11.tgz) 10e6b7f58519081c58931ae4cf583b55 MD5 checksum (insightfinder-app-for-splunk_10.tgz) b8de5a738ba6dd574cbefc49f11698d0
To install your download
For instructions specific to your download, click the Details tab after closing this window.

Flag As Inappropriate

InsightFinder App for Splunk

Overview
Details
Leverage InsightFinder's predictive analytics services to extract insights from your Splunk data (and other sources) and improve the uptime/availability of your critical services and reduce your MTTR when incidents occur!

InsightFinder provides the industry's best multivariate anomaly detection, automatic root cause analysis, stream-based free-from text log analysis (identifying rare/bursty events, classifying similar events in one group) based on our patent-pending unsupervised statistical machine learning and signal processing technologies. Our product has been tested in some of the largest and most challenging IT environments, from the world's largest technology companies (including Google -- our first customer!), Fortune 50 financial institutions, major telecommunications carriers, and some of the largest healthcare institutions in the world.

InsightFinder is free for small accounts and priced affordably for others.

Welcome to InsightFinder!

Getting Started with InsightFinder's App for Splunk

Sign up for an account with InsightFinder
- Go to InsightFinder Signup

Register a Splunk project in InsightFinder
- Sign in to InsightFinder with your user credentials
- Go to Settings and add a new project (Top icon on the left side of your screen) under the "Insight Agent" tab
- Give your project a name, select "Private Cloud" for project type,
- Select "data type" to be either "metric" or "log"
- Select "agent type" to be "Splunk"
- Go to Account Info (Note: click on your user ID in the top right corner of the screen) and note your license key number and enter it in the configuration file: $SPLUNK_HOME/etc/apps/insightfinderapp/default/insightfindersetting.cfg'
- An example configuration file is as fllows:

[SETTINGS]
SERVER_URL=https://app.insightfinder.com
USERNAME=YOUR USER NAME in InsightFinder
LICENSEKEY=YOUR LICENSE KEY in your InsightFinder account profile
CHUNKSIZE=200

If your are an on-prem customer, please replace SERVER_URL with your InsightFinder app server URL. The CHUNKSIZE denotes the size (in KB) of each data block transmitted from your Splunk App to the InsightFinder app server. Please make sure the chunk size is allowed by your local network configuration and within the jetty configuration limitation on InsightFinder app server. https://agent-data.insightfinder.com currently can accept the chunk size below 500KB.

Query Requirements

For log streaming analysis, a sample query looks like this

index="_internal" source="/opt/splunk/var/log/splunk/logData.log" | reportmetrics projectName=YOUR_PROJECT_NAME mode=LogStreaming

For log replay analysis, a sample query looks like this

index="_internal" source="/opt/splunk/var/log/splunk/logData.log" | reportmetrics projectName=YOUR_PROJECT_NAME mode=LogReplay

For metrics streaming analysis, a query looks like this:

index="_internal" source="/opt/splunk/var/log/splunk/metrics.log" | rename YOUR_TIMESTAMP_NAME as _time | rename YOUR_HOST_NAME as host | table _time host instantaneous_eps average_kbps instantaneous_kbps | reportmetrics projectName=YOUR_PROJECT_NAME mode=MetricStreaming

For metrics replay analysis, a query looks like this:

index="_internal" source="/opt/splunk/var/log/splunk/metrics.log" | rename YOUR_TIMESTAMP_NAME as _time | rename YOUR_HOST_NAME as host | table _time host instantaneous_eps average_kbps instantaneous_kbps | reportmetrics projectName=YOUR_PROJECT_NAME mode=MetricReplay

This command reports instantaneous_eps, average_kbps, instantaneous_kbps. Please make sure timestamp is named as _time and the host name is named as host. You can use the rename command to meet the naming requirements.

Installation
- Download the installation file by clicking "Download" on the InsightFinder Splunkbase Page.
- Unpack the contents into
$SPLUNK_HOME/etc/apps/
- After unpacking, you should see the directory in:
$SPLUNK_HOME/etc/apps/insightfinderapp
We’ll refer to this directory as $INSIGHTFINDER_HOME in future instructions.
- Configure the file $SPLUNK_HOME/etc/apps/insightfinderapp/default/insightfindersetting.cfg using the instrutions given above.

Release Notes

Version 1.7.4
Oct. 9, 2017

Version 1.7.3
Sept. 22, 2017

Version 1.7.2
Sept. 21, 2017

Version 1.7.1
Sept. 18, 2017

Version 1.7
Sept. 14, 2017

Version 1.6.3
Sept. 11, 2017

Version 1.6.2
Sept. 11, 2017

Version 1.6.1
Sept. 6, 2017

Version 1.6
Sept. 5, 2017

Version 1.5
Sept. 4, 2017

Version 1.4
Aug. 8, 2017

Version 1.3
Aug. 8, 2017

Version 1.2
March 17, 2017

Updated scripts sending data to and fetching data from InsightFinder server.

Version 1.1
Nov. 13, 2016

Version 1.0
Aug. 25, 2016

10
Installs
226
Downloads
Share Subscribe LOGIN TO DOWNLOAD

Subscribe Share

Splunk Certification Program

Splunk's App Certification program uses a specific set of criteria to evaluate the level of quality, usability and security your app offers to its users. In addition, we evaluate the documentation and support you offer to your app's users.

Are you a developer?

As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 50GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps and add-ons from Splunk, our partners and our community. Find an app or add-on for most any data source and user need, or simply create your own with help from our developer portal.

Follow Us:
© 2005-2017 Splunk Inc. All rights reserved.
Splunk®, Splunk>®, Listen to Your Data®, The Engine for Machine Data®, Hunk®, Splunk Cloud™, Splunk Light™, SPL™ and Splunk MINT™ are trademarks and registered trademarks of Splunk Inc. in the United States and other countries. All other brand names, product names, or trademarks belong to their respective owners.