Alerting

License usage previous 30 days doesn't work

ddarmand
Communicator

Hello,

i have an alert because of the limitation of 500 mb per day,
i want to know which host is spamming me to shut it but the licence previous 30 days doesn't work,
but licence usage today is working fine..

The graph is blank...

Can you help me ?

1 Solution

jlaw
Splunk Employee
Splunk Employee

jlaw
Splunk Employee
Splunk Employee

lukejadamec
Super Champion

What do you get when you run this for the past 30 days?
index=_internal source=*metrics.log group=per_index_thruput series!=_* | eval totalGB = (kb/1024)/1024 | timechart span=1d sum(totalGB)

0 Karma

lukejadamec
Super Champion

Which app is generating the chart?

0 Karma
Get Updates on the Splunk Community!

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...