Find Pod Count in splunk search Find Pod Count in splunk search kubernetes kubernetes

Find Pod Count in splunk search


Splunk can only work with the data it has. If there are 4 pods, but only 2 of them have sent an event recently then Splunk will think there are only 2 pods. One answer is search back further than 15 minutes. Even then you run the risk of not all pods reporting an event during the time searched. There's not much one can do about that.