Enumerate Systems/Sources Monitored


1 comment

  • Avatar
    Jorge Silva

    Should I look for "_source" as a proxy for systems?

    That depends on how you labeled the sources, but it is a good starting point. You can also search by "_collector" or any other metadata.

    You are only allowed to search by a specific timerange, but you can also use the Collector Management API to get this information, and it is not limited by timerange. More information about this can be found at https://help.sumologic.com/APIs/Collector-Management-API.

    Comment actions Permalink

Please sign in to leave a comment.