mk-livestatus on my Nagios server
Posted: Mon Jun 24, 2013 4:42 am
I have integrated Splunk to Nagios.
Here, I mean to say, I can able to see Nagios alerts in Splunk dashboard.
Further to this, but I dont see any alerts in Livestatus Dashboard & Livestatus alert Dashboard. Going through the below link it says...
REQUIRED:•You must also edit NagiosLivestatus.xml and change the "src_host" name to a relevant device name in nagios.
•netcat must be installed on your splunk server for the lookup scripts to work (usually included by default in most Linux Distributions)
•there is a bug in netcat on Ubuntu 10.04, please install the latest version from 11.10 :-
•<http://packages.ubuntu.com/oneiric/netcat-openbsd>
•You must ensure that the ip address of your splunk server is listed next to "only_from" in /etc/xinetd.d/livestatus on your nagios server.
But I dont see file mentioned above NagiosLivestatus.xml & /etc/xinetd.d/livestatus on Nagios Server.
Is that mean, I have to install mk-livestatus on my Nagios server ?
What should I put Nagios server pot ? i have put 5666 is this right ?
Here, I mean to say, I can able to see Nagios alerts in Splunk dashboard.
Further to this, but I dont see any alerts in Livestatus Dashboard & Livestatus alert Dashboard. Going through the below link it says...
REQUIRED:•You must also edit NagiosLivestatus.xml and change the "src_host" name to a relevant device name in nagios.
•netcat must be installed on your splunk server for the lookup scripts to work (usually included by default in most Linux Distributions)
•there is a bug in netcat on Ubuntu 10.04, please install the latest version from 11.10 :-
•<http://packages.ubuntu.com/oneiric/netcat-openbsd>
•You must ensure that the ip address of your splunk server is listed next to "only_from" in /etc/xinetd.d/livestatus on your nagios server.
But I dont see file mentioned above NagiosLivestatus.xml & /etc/xinetd.d/livestatus on Nagios Server.
Is that mean, I have to install mk-livestatus on my Nagios server ?
What should I put Nagios server pot ? i have put 5666 is this right ?