This documentation has an index for AI agents at /llms.txt. A Markdown version of this page is available at https://explorer.opentelemetry.io/collector/components/contrib/splunkenterprisereceiver.md.

Splunk Enterprise Receiver

OpenTelemetry Collector receiver · contrib distribution

The Splunk Enterprise Receiver is a pull based tool which enables the ingestion of performance metrics describing the operational status of a user's Splunk Enterprise deployment to an appropriate observability tool. It is designed to leverage several different data sources to gather these metrics including the introspection api endpoint and serializing results from ad-hoc searches. Because of this, care must be taken by users when enabling metrics as running searches can effect your Splunk Enterprise Deployment and introspection may fail to report for Splunk Cloud deployments. The primary purpose of this receiver is to empower those tasked with the maintenance and care of a Splunk Enterprise deployment to leverage opentelemetry and their observability toolset in their jobs.

  • Component ID: contrib-splunkenterprisereceiver
  • Name: splunkenterprisereceiver
  • Type: receiver
  • Distribution: contrib
  • Repository: opentelemetry-collector-contrib

Stability

LevelSignals
alphametrics

Attributes

AttributeTypeDescription
splunk.bucket.dirstringThe bucket super-directory (home, cold, thawed) for each index
splunk.featurestringThe Feature name from the Splunk Health Introspection Endpoint
splunk.feature.healthstringThe Health (in color form) of a Splunk Feature from the Splunk Health Introspection Endpoint
splunk.hoststringThe name of the splunk host
splunk.index.namestringThe name of the index reporting a specific KPI
splunk.indexer.searchablestringThe searchability status reported for a specific object
splunk.indexer.statusstringThe status message reported for a specific object
splunk.kvstore.externalstringValue denoting if the KV store is using an external service
splunk.kvstore.status.valuestringThe string value of the status returned when reporting on KV store using the introspection endpoint
splunk.kvstore.storage.enginestringThe backend storage used by the KV store
splunk.license.labelstringThe label of the license.
splunk.license.statusstringThe status of the license.
splunk.license.typestringThe type of license.
splunk.queue.namestringThe name of the queue reporting a specific KPI
splunk.rollingorrestartboolBoolean that indicates if there is a rolling restart or rolling upgrade in progress.
splunk.search.statestringThe dispatch state of the search
splunk.searchable.restartboolBoolean that indicates if a searchable rolling restart/upgrade in progress.t
splunk.searchartifacts.cache.typestringThe search artifacts cache type
splunk.splunkd.buildstringThe build number for this Splunk instance version
splunk.splunkd.versionstringThe splunkd version number

Data

  • JSON: /data/collector/components/contrib-splunkenterprisereceiver/contrib-splunkenterprisereceiver-1d77cb69babf.json
  • Explore: /collector/components/contrib/splunkenterprisereceiver