Installation:
Software requirements
Splunk Enterprise system requirements
This App runs on Splunk Enterprise, all of the Splunk Enterprise system requirements apply.
Deployment Guide
• Single Instance
(Pre-requisite) Docker App For Splunk
• Distributed deployment
Search Head – Docker App For Splunk
Configuration:
After installing the app, you can populate it by going to "Advanced Search » Search Macros." From there, search for and edit the macro according to the instructions in the snapshot below. Then, enter the name of the index where the data is being ingested using the "Docker Add-on for Splunk."
Macro name: “docker_index_”
Dashboard details
Docker Containers: It provides a detailed account of the Total Containers present, as well as those that are currently operational, stopped or paused. Their current state, status and when they were created as well as, if there are any warnings that need immediate attention.
Docker Images: It furnishes comprehensive details about the images in your environment such as the total number of images, their names, ID, creation date, and their size.
Docker Statistics: It offers a thorough breakdown about the CPU and Memory consumption as well as the specifics of each container's memory usage, alongside a comprehensive overview of total PIDs.
Splunk cloud compatibility
Splunk cloud compatibility
As a Splunkbase app developer, you will have access to all Splunk development resources and receive a 10GB license to build an app that will help solve use cases for customers all over the world. Splunkbase has 1000+ apps from Splunk, our partners and our community. Find an app for most any data source and user need, or simply create your own with help from our developer portal.