{"id":13524407,"url":"https://github.com/sduff/awesome-itsi","last_synced_at":"2025-04-01T02:31:22.638Z","repository":{"id":41766975,"uuid":"207188199","full_name":"sduff/awesome-itsi","owner":"sduff","description":"A collection of awesome resources for Splunk IT Service Intelligence","archived":false,"fork":false,"pushed_at":"2022-12-04T15:13:03.000Z","size":163,"stargazers_count":15,"open_issues_count":6,"forks_count":5,"subscribers_count":2,"default_branch":"master","last_synced_at":"2024-05-22T13:03:12.263Z","etag":null,"topics":["awesome","awesome-list","service-intelligence","splunk","splunk-itsi"],"latest_commit_sha":null,"homepage":"","language":null,"has_issues":true,"has_wiki":null,"has_pages":null,"mirror_url":null,"source_name":null,"license":"cc0-1.0","status":null,"scm":"git","pull_requests_enabled":true,"icon_url":"https://github.com/sduff.png","metadata":{"files":{"readme":"README.md","changelog":null,"contributing":"contributing.md","funding":null,"license":"LICENSE.md","code_of_conduct":"code-of-conduct.md","threat_model":null,"audit":null,"citation":null,"codeowners":null,"security":null,"support":null}},"created_at":"2019-09-08T23:47:24.000Z","updated_at":"2024-02-08T20:34:42.000Z","dependencies_parsed_at":"2023-01-23T01:15:19.258Z","dependency_job_id":null,"html_url":"https://github.com/sduff/awesome-itsi","commit_stats":null,"previous_names":[],"tags_count":0,"template":false,"template_full_name":null,"repository_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/sduff%2Fawesome-itsi","tags_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/sduff%2Fawesome-itsi/tags","releases_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/sduff%2Fawesome-itsi/releases","manifests_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories/sduff%2Fawesome-itsi/manifests","owner_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners/sduff","download_url":"https://codeload.github.com/sduff/awesome-itsi/tar.gz/refs/heads/master","host":{"name":"GitHub","url":"https://github.com","kind":"github","repositories_count":246572299,"owners_count":20798935,"icon_url":"https://github.com/github.png","version":null,"created_at":"2022-05-30T11:31:42.601Z","updated_at":"2022-07-04T15:15:14.044Z","host_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub","repositories_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repositories","repository_names_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/repository_names","owners_url":"https://repos.ecosyste.ms/api/v1/hosts/GitHub/owners"}},"keywords":["awesome","awesome-list","service-intelligence","splunk","splunk-itsi"],"created_at":"2024-08-01T06:01:09.816Z","updated_at":"2025-04-01T02:31:22.389Z","avatar_url":"https://github.com/sduff.png","language":null,"funding_links":[],"categories":["Apps","Other Lists"],"sub_categories":["Premium Apps","TeX Lists"],"readme":"# Awesome ITSI [![Awesome](https://awesome.re/badge.svg)](https://awesome.re)\n\n\u003e A curated list of awesome resources for Splunk IT Service Intelligence.\n\n## Contents\n\n- [Basics](#basics)\n- [Education and Training](#education-and-training)\n- [Professional Services](#professional-services)\n- [Modules](#modules)\n- [Content Packs](#content-packs)\n- [Notable Event Aggregation Policy](#notable-event-aggregation-policy)\n- [Integrations](#integrations)\n- [.Conf Presentations](#conf-presentations)\n\n## Basics\n\nResources for getting started with Splunk IT Service Intelligence.\n\n- [Splunk Website](https://splunk.com)\n  - [Downloads](https://www.splunk.com/download)\n  - [Previous Releases](https://www.splunk.com/page/previous_releases)\n  - [Awesome Splunk](https://github.com/sduff/awesome-splunk) - A curated list of awesome Splunk resources.\n- [Splunk ITSI](https://www.splunk.com/en_us/software/it-service-intelligence.html)\n  - [Splunkbase Entry](https://splunkbase.splunk.com/app/1841/) - Download page for licensed users.\n  - [Documentation](https://docs.splunk.com/Documentation/ITSI/latest)\n  - [Splunk Blog ITSI Posts](https://www.splunk.com/blog/tag/splunk-itsi.html)\n\n## Education and Training\n- Training Classes\n  - [Using IT Service Intelligence](https://www.splunk.com/en_us/training/courses/using-splunk-it-service-intelligence.html)\n  - [Implementing IT Service Intelligence](https://www.splunk.com/en_us/training/courses/implementing-splunk-it-service-intelligence.html)\n- Certifications\n  - [Splunk ITSI Certified Admin](https://www.splunk.com/en_us/training/certification-track/splunk-itsi-certified-admin.html)\n  - [Splunk ITSI Admin Blueprint](https://www.splunk.com/content/dam/splunk2/pdfs/training/Splunk-Test-Blueprint-ITSI-Admin-v1.1.pdf) - A guide to the examinable material in the ITSI Admin certification.\n\n## Professional Services\n\nNeed to get the experts involved in an ITSI implementation, or seeing guidance.\n\n- [Splunk ITOA Professional Service Offerings](https://www.splunk.com/en_us/support-and-services/splunk-services/offerings/itoa-services.html)\n- [Splunk Partners for ITSI Implementation](https://partners.splunk.com/locator/search?f0=Professional+Services+Specializations\u0026f0v0=ITSI+Implementation)\n\n## Modules\n\n### ITSI Module for Application Performance Monitoring\n\nThe Module for Application Performance Monitoring (APM) does not ship with ITSI\nby default. It can be [downloaded from\nSplunkbase](https://splunkbase.splunk.com/app/3664/). If you are using ITSI on\nSplunk Cloud, request it to be installed from Splunk Cloud Ops.\n\n#### Support Add-Ons\n- [Splunk Add-on for New Relic](https://splunkbase.splunk.com/app/3465)\n- [Splunk Add-on for AppDynamics](https://splunkbase.splunk.com/app/3471)\n\n### Application Server Module\n#### Support Add-Ons\n- [Splunk Add-on for Tomcat](https://splunkbase.splunk.com/app/2911/)\n- [Splunk Add-on for IBM WebSphere Application Server](https://splunkbase.splunk.com/app/2789/)\n\n### Splunk ITSI Module for Continuous Delivery The Module for Continuous\n\nThe Splunk ITSI Module for Continuous Delivery does not shop with ITSI by\ndefault. It can be [downloaded from\nSplunkbase](https://splunkbase.splunk.com/app/3439/). If you are using ITSI on\nSplunk Cloud, request it to be installed from Splunk Cloud Ops.\n\n#### Support Add-Ons\n- [Splunk Add-on for Bamboo](https://splunkbase.splunk.com/app/3440/)\n- [Splunk Add-on for JIRA](https://splunkbase.splunk.com/app/1438/)\n- [Splunk App for Jenkins](https://splunkbase.splunk.com/app/3332/)\n- [Splunk Plugin for Jenkins](https://wiki.jenkins-ci.org/display/JENKINS/Splunk+Plugin+for+Jenkins)\n\n### Database Module\n#### Support Add-Ons\n- [Splunk Add-on for Microsoft SQL Server](https://splunkbase.splunk.com/app/2648/)\n- [Splunk Add-on for Oracle Database](https://splunkbase.splunk.com/app/1910/)\n\n### End User Experience Monitoring Module\n#### Support Add-Ons\n- [Splunk Add-on for MINT](https://splunkbase.splunk.com/app/3309/)\n\n### Load Balancer Module\n#### Support Add-Ons\n- [Splunk Add-on for F5 Big-IP](https://splunkbase.splunk.com/app/2680/)\n- [Splunk Add-on for Citrix Netscaler](https://splunkbase.splunk.com/app/2770/)\n\n### Operating System Module\n#### Support Add-Ons\n- [Splunk Add-on for Unix and Linux](https://splunkbase.splunk.com/app/833/)\n- [Splunk Add-on for Microsoft Window](https://splunkbase.splunk.com/app/742/)\n\n### Storage Module\n#### Support Add-Ons\n- [Splunk Add-on for NetApp Data ONTAP](https://splunkbase.splunk.com/app/3418/)\n- [Splunk Add-on for EMC VNX](https://splunkbase.splunk.com/app/1836/)\n\n### Virtualization Module\n#### Support Add-Ons\n- [Splunk Add-on for Microsoft Hyper-V](https://splunkbase.splunk.com/app/1253/)\n- [Splunk Add-on for VMware](https://splunkbase.splunk.com/app/3215/)\n\n### Web Server Module\n#### Support Add-Ons\n- [Splunk Add-on for Apache Web Server](https://splunkbase.splunk.com/app/3186/)\n- [Splunk Add-on for Microsoft IIS](https://splunkbase.splunk.com/app/3185/)\n\n## Content Packs\n\nITSI currently still supports modules. Modules were introduced in version 2.0\nas a way to deliver out-of-the-box content to customers. \n\nLike content packs, modules include KPI base searches, KPIs, and entity\nauto-discovery searches, but not the other elements that content packs provide.\nOne key difference is that all module content is immutable, so you can't tailor\nKPI base searches for maximum performance.\n\nDue to the limitations of modules, the current best practice is to use the\ncontent packs instead.\n\nFurther details on ITSI Content Packs can be found at [https://docs.splunk.com/Documentation/ITSICP/current/Config/About](https://docs.splunk.com/Documentation/ITSICP/current/Config/About) \n\n### Content Pack for Monitoring Microsoft Windows \n\n- [Content Pack for Monitoring Microsoft Windows Download](https://docs.splunk.com/Documentation/ITSICP/current/Config/ConfigWin#Install_the_content_pack)\n- [Documentation](https://docs.splunk.com/Documentation/ITSICP/current/Config/AboutWin)\n\n#### Support Add-Ons\n- [Splunk Add-on for Microsoft Windows](https://splunkbase.splunk.com/app/742/)\n\n### Content Pack for Monitoring Unix and Linux \n\n- [Content Pack for Monitoring Unix and Linux Download](https://docs.splunk.com/Documentation/ITSICP/current/Config/ConfigNix#Install_the_content_pack)\n- [Documentation](https://docs.splunk.com/Documentation/ITSICP/current/Config/AboutNix)\n\n#### Support Add-Ons\n- [Splunk Add-on for Unix and Linux](https://splunkbase.splunk.com/app/833/)\n\n### Splunk ITSI Content Pack for Shared IT Infrastructure Components\n\n- [Content Pack for Shared IT Infrastructure Components Download](https://docs.splunk.com/Documentation/ITSICP/current/Config/ConfigShared#Install_the_content_pack)\n- [Splunkbase Entry](https://splunkbase.splunk.com/app/4044/) - Alternate download site on Splunkbase.\n- [Documentation](https://docs.splunk.com/Documentation/ITSICP/current/Config/AboutShared)\n\n#### Support Add-Ons\n- [Splunk Add-on for Microsoft Windows](https://splunkbase.splunk.com/app/742/)\n- [Splunk Add-on for Unix and Linux](https://splunkbase.splunk.com/app/833/)\n\n## Notable Event Aggregation Policy\n- A Blueprint for Splunk ITSI Alerting - A Splunk blog series by Jeff Wiedemann on developing a blueprint for enterprise-wide alerting.\n  - [Overview](https://www.splunk.com/blog/2019/01/10/a-blueprint-for-splunk-itsi-alerting-overview.html)\n  - [Part 1](https://www.splunk.com/blog/2019/01/18/a-blueprint-for-splunk-itsi-alerting-step-1.html)\n  - [Part 2](https://www.splunk.com/blog/2019/02/01/a-blueprint-for-splunk-itsi-alerting-step-2.html)\n  - [Part 3](https://www.splunk.com/blog/2019/02/08/a-blueprint-for-splunk-itsi-alerting-step-3.html) \n  - [Part 4](https://www.splunk.com/blog/2019/02/14/a-blueprint-for-splunk-itsi-alerting-step-4.html)\n  - [Part 5](https://www.splunk.com/blog/2019/02/22/a-blueprint-for-splunk-itsi-alerting-step-5.html)\n\n## Integrations\n- Phantom\n  - [Awesome Phantom](https://github.com/ryanplasma/awesome-splunk-phantom)\n- VictorOps\n  - [Splunk Integration Guide - VictorOps](https://help.victorops.com/knowledge-base/splunk-integration-guide/) - The VictorOps and Splunk integration allow teams to schedule queries or alerts in Splunk to monitor system health. The VictorOps integration with Splunk can be leveraged to collect data about the overall release tool chain and deployment success to allow teams to collaborate around that information in the timeline.\n  - [Create ticket in VictorOps - Splunk](https://docs.splunk.com/Documentation/ITSI/4.3.1/User/Setupandrunnotableeventactions#Create_a_ticket_in_VictorOps) - You can create an incident in a VictorOps incident management system for an (ITSI) episode.\n\n## .Conf Presentations\n\nSelected .conf presentations related to various aspects of ITSI.\n\n- [All .Conf Presentations for 'ITSI'](https://conf.splunk.com/watch/conf-online.html?search.products=1518807815929006Tats#/)\n- [Introduction to Splunk IT Service Intelligence](https://conf.splunk.com/files/2016/slides/introduction-to-splunk-it-service-intelligence.pdf) - .conf16.\n- [Anatomy of a successful Splunk IT Service Intelligence Deployment](https://conf.splunk.com/files/2017/slides/automation-of-event-correlation-and-clustering-with-built-in-machine-learning-algorithms-in-splunk-it-service-intelligence-itsi.pdf) - .conf17.\n- [Ready, Set, Go! Learn from others - The First 30 day Experiences of ITSI Customers](https://conf.splunk.com/files/2017/slides/ready-set-go-learn-from-others-the-first-30-day-experiences-of-itsi-customers.pdf) - .conf17.\n- [The Splunk IT Service Intelligence (ITSI) Top 20 KPIs](https://conf.splunk.com/files/2017/slides/ready-set-go-learn-from-others-the-first-30-day-experiences-of-itsi-customers.pdf) - .conf17.\n- [Faster Time to Value with ITSI Modules](https://conf.splunk.com/files/2016/slides/faster-time-to-value-with-itsi-modules.pdf) - .conf17.\n- [Anatomy of a successful Event Analytics Deployment](https://static.rainfocus.com/splunk/splunkconf18/sess/1523395100233001xpRe/finalPDF/IT1428_AnatomySuccessfulEventAnalytics_Final_1538858366825001rI4i.pdf) - .conf18.\n\n\n## Contribute\nContributions welcome! Read the [contribution guidelines](contributing.md) first.\n\n## License\n[![CC0](https://mirrors.creativecommons.org/presskit/buttons/88x31/svg/cc-zero.svg)](https://creativecommons.org/publicdomain/zero/1.0)\n\nTo the extent possible under law, Simon Duff has waived all copyright and\nrelated or neighbouring rights to this work.\n","project_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fsduff%2Fawesome-itsi","html_url":"https://awesome.ecosyste.ms/projects/github.com%2Fsduff%2Fawesome-itsi","lists_url":"https://awesome.ecosyste.ms/api/v1/projects/github.com%2Fsduff%2Fawesome-itsi/lists"}