Just started using Splunk for log monitoring. Anyone care to share best practices or some good Splunk Apps, event types or log queries you've setup to monitor either your Confluence or Jira instances?
For Confluence we turned on web server logging for Confluence and we have Splunk pull that in. For all the servers in our org (which would include the Confluence server) we are pulling in perfmon, event log, and current process data. We haven't pulled in the Confluence error logs ... yet.
What specific classes or packages did you enable to track? Are perfmon, event log, and current process data all in one directory or are they spread out over multiple directories?
For JIRA I just write a quick curl via rest api and out to json. Then stream the data to splunk
https://docs.atlassian.com/jira/REST/latest/
It looks like you're new here. Sign in or register to get started.