All Apps and Add-ons

Dashboard - Rolled Buckets By Index - source path for Linux

ChrisBell04
Communicator

On this dashboard, the sub-panel "License usage for index X" has the source hardcoded for Linux. Probably a good idea to abstract this into another macro? splunkadmins_license_usage_source = *license_usage.log

index=_internal `licensemasterhost` source="/opt/splunk/var/log/splunk/license_usage.log" idx=X
| bin _time span=24h
| stats sum(b) AS totalB by idx, _time
| eval totalB=totalB/1024/1024/1024
| chart avg(totalB) AS totalGB by _time, idx
0 Karma
1 Solution

gjanders
SplunkTrust
SplunkTrust
0 Karma

gjanders
SplunkTrust
SplunkTrust

Fixed in testing version found here
Sorry must have missed that one...

0 Karma

ChrisBell04
Communicator

Thanks for the quick fix!

0 Karma

gjanders
SplunkTrust
SplunkTrust

Thanks for letting me know, I will try to release it on SplunkBase in the next few weeks.

I try to add at least a few changes between releases 🙂

0 Karma
Get Updates on the Splunk Community!

September Community Champions: A Shoutout to Our Contributors!

As we close the books on another fantastic month, we want to take a moment to celebrate the people who are the ...

Splunk Decoded: Service Maps vs Service Analyzer Tree View vs Flow Maps

It’s Monday morning, and your phone is buzzing with alert escalations – your customer-facing portal is running ...

What’s New in Splunk Observability – September 2025

What's NewWe are excited to announce the latest enhancements to Splunk Observability, designed to help ITOps ...