Hey,
I'm pretty new to Splunk so sorry if anything I say is wildly off base, but I'm curious if there's a way to collect usage data about my app. I'd like to be able to extract which searches the users have run, how much space the app is taking up on disk (with lookup tables and stuff), and maybe bandwidth usage. I can modify the app to support anything if need be. Any way to do some/all of this?
Specific things I'd like to do:
1. Sizes of lookup tables
2. Time it takes to run dashboards
3. How much data is being used in the index
4. Queries being run by users
5. Bandwidth usage
Some of these can be done with custom Python scripts, but I was hoping there was a more canonical way to do it.
Take a look at the Distributed Management Console http://docs.splunk.com/Documentation/Splunk/6.2.5/Admin/ConfiguretheMonitoringConsole