Getting Data In

How to monitor disk usage on a Unix server where Splunk is installed without using the Splunk Add-on for Unix and Linux?

varad_joshi
Communicator

I need to monitor one or more UNIX filesystems on the server where Splunk is installed. Can I do it without the Splunk Add-on for Unix and Linux which is available in Splunkbase?

Tags (3)
0 Karma
1 Solution

diogofgm
SplunkTrust
SplunkTrust

You can try to use the DMC
Check the docs here:
http://docs.splunk.com/Documentation/Splunk/6.4.1/DMC/DMCoverview

------------
Hope I was able to help you. If so, some karma would be appreciated.

View solution in original post

0 Karma

ravila_splunk
Splunk Employee
Splunk Employee

Look into using the DMC to monitor disk space, and other important Splunk Deployment Metrics:

http://docs.splunk.com/Documentation/Splunk/6.4.1/DMC/ResourceusageMachine

0 Karma

diogofgm
SplunkTrust
SplunkTrust

You can try to use the DMC
Check the docs here:
http://docs.splunk.com/Documentation/Splunk/6.4.1/DMC/DMCoverview

------------
Hope I was able to help you. If so, some karma would be appreciated.
0 Karma

varad_joshi
Communicator

Thanks, I found the information I wanted in DMC.

I am trying to setup alerts based on Disk usage value, in the alert I am selecting alert condition as custom and putting following in search condition - search "Disk Usage (%)">10

I have scheduled this search to run every hour, even manually running it is not generating any alerts.
Where am I missing?

0 Karma

diogofgm
SplunkTrust
SplunkTrust

did you enable the rule? even then you edit to choose the % the rule is disabled by default.
did you setup additional actions? by default it only add the alert to trigerrred alerts. you can add more actions in advance edit -> actions ->edit

------------
Hope I was able to help you. If so, some karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...

Get Inspired! We’ve Got Validation that Your Hard Work is Paying Off

We love our Splunk Community and want you to feel inspired by all your hard work! Eric Fusilero, our VP of ...

What's New in Splunk Enterprise 9.4: Features to Power Your Digital Resilience

Hey Splunky People! We are excited to share the latest updates in Splunk Enterprise 9.4. In this release we ...