Splunk Feeds Tracking
Monitor your Splunk data sources availability, quality, and latency with three dedicated tracking components.
Key Capabilities
Data Source Monitoring
Track Splunk feeds from index/sourcetype perspective with automatic entity discovery, availability tracking via delay thresholds, and performance monitoring via latency metrics.
Data Host Monitoring
Monitor data from the host/sourcetype perspective. Track which hosts are sending data and detect when specific hosts stop reporting.
Metric Host Monitoring
Dedicated monitoring for metrics ingestion, tracking metrics-specific KPIs and performance indicators.
Quality Detection
Automatic data quality assessment through an event format recognition engine that detects format anomalies in your data.
Variable & Static Thresholds
Define static or variable delay and latency thresholds per entity. Variable thresholds adapt to time slots — business hours, weekends, maintenance windows — for context-aware monitoring.
Priority, Tags & SLA Policies
Automate entity management through lookup-based policies. Assign priorities, tags, and SLA classes at scale from a single source of truth with wildcard matching and simulation mode.
Machine Learning Outliers
ML-driven anomaly detection that learns seasonal patterns — time-of-day, day-of-week — and identifies unusual deviations in event counts and metrics without manual threshold tuning.
KPI-Driven Metrics Store
TrackMe generates and tracks KPIs — delay, latency, ingest-driven event counts — and stores them as high-performance metrics in the Splunk metrics store for fast, scalable historical analysis.
Incident Tracking & Audit
Full incident lifecycle tracking with detailed audit trails. Every status change, acknowledgement, and action is recorded, providing complete observability over your monitoring operations.
Related Features
Ready to get started?
Request a free 90-day trial with all features enabled. No restrictions.