Ever wonder what the realtime PING status is for an IP, DNS or a URL that is in your event AFTER it has been indexed? You may want to know if the address is up or down and if there is a significant delay to get to it. The pingstatus command is a convenient way to ping your address field. The README.txt provides usage and instructions on how to install and test it. Your Splunk instance must be running as root or sudo root access to call the ICMP protocol, which is what this uses from acknowledged public domain sources. NOTE: when starting Splunk as a root or Admin user, do NOT revert back to starting Splunk as a non-root or non-Admin user as the Splunk index files will be owned by root or Admin and Splunkd will not have permission to access them as an underprivileged user. If you do make this mistake, stop Splunk, and use the chown or equivalent command to make all files under Splunk owned by the same user.
(0)
Categories
Created By
Type
Downloads
Licensing
Splunk Answers
Resources