Getting Data In

How to monitor disk usage on a Unix server where Splunk is installed without using the Splunk Add-on for Unix and Linux?

varad_joshi
Communicator

I need to monitor one or more UNIX filesystems on the server where Splunk is installed. Can I do it without the Splunk Add-on for Unix and Linux which is available in Splunkbase?

Tags (3)
0 Karma
1 Solution

diogofgm
SplunkTrust
SplunkTrust

You can try to use the DMC
Check the docs here:
http://docs.splunk.com/Documentation/Splunk/6.4.1/DMC/DMCoverview

------------
Hope I was able to help you. If so, some karma would be appreciated.

View solution in original post

0 Karma

ravila_splunk
Splunk Employee
Splunk Employee

Look into using the DMC to monitor disk space, and other important Splunk Deployment Metrics:

http://docs.splunk.com/Documentation/Splunk/6.4.1/DMC/ResourceusageMachine

0 Karma

diogofgm
SplunkTrust
SplunkTrust

You can try to use the DMC
Check the docs here:
http://docs.splunk.com/Documentation/Splunk/6.4.1/DMC/DMCoverview

------------
Hope I was able to help you. If so, some karma would be appreciated.
0 Karma

varad_joshi
Communicator

Thanks, I found the information I wanted in DMC.

I am trying to setup alerts based on Disk usage value, in the alert I am selecting alert condition as custom and putting following in search condition - search "Disk Usage (%)">10

I have scheduled this search to run every hour, even manually running it is not generating any alerts.
Where am I missing?

0 Karma

diogofgm
SplunkTrust
SplunkTrust

did you enable the rule? even then you edit to choose the % the rule is disabled by default.
did you setup additional actions? by default it only add the alert to trigerrred alerts. you can add more actions in advance edit -> actions ->edit

------------
Hope I was able to help you. If so, some karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...