Monitoring Splunk

How do I predict the cpu load in Splunk?

Shashank_87
Explorer

Hi, I need to predict the cpu % when the load is increased. So basically, suppose 10000 requests are hitting per day on a platform averaging a cpu utilization of 70%. Now, I want to predict when the number of requests get increased to double, say 20000 per day. Then, what will the cpu utilization look like?

How should I approach this type of work?

Tags (1)
0 Karma

mstjohn_splunk
Splunk Employee
Splunk Employee

Hi @Shashank_87 ,

Would you mind posting a search that you tried to get this information? The more information you provide our community, the better chance you have of getting your problem solved.

Thanks for posting!

0 Karma

Shashank_87
Explorer

index=os sourcetype=cpu CPU=ALL host=host1 OR host=host2
| multikv fields pctIdle
| eval Percent_CPU_Load = 100 - pctIdle
| timechart span=2m list(Percent_CPU_Load) by host

This is what I am trying. No suppose suddenly there is an increase in load on host1 and host2. I want to predict what would be the Percent_CPU_Load look like?

0 Karma
Get Updates on the Splunk Community!

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...

Operationalizing Entity Risk Score with Enterprise Security 8.3+

Overview Enterprise Security 8.3 introduces a powerful new feature called “Entity Risk Scoring” (ERS) for ...