Monitoring Splunk

How to know if Splunk is using the Hyperthreading


Hi Team,

We asked our Linux Team and they said that the hyperthreading is enabled across all Clustered Indexers. This Indexers are all Physical servers. Our issue is that we have High CPU Usage on our Indexers so we wanted to check if Splunk is utilizing the benefit of hyperthreading and how we can verify and check it. Do we have additional step to configure on Splunk side to use the hyperthreading of the Linux server?


Any ideas or SPL queries you can share that would be helpful. Thanks 


Labels (2)
Tags (2)
0 Karma


If hyperthreading is enabled then Splunk will use it, but I'm not sure Splunk is aware that HT is in use.

If this reply helps you, Karma would be appreciated.
0 Karma
Get Updates on the Splunk Community!

.conf24 | Day 0

Hello Splunk Community! My name is Chris, and I'm based in Canberra, Australia's capital, and I travelled for ...

Enhance Security Visibility with Splunk Enterprise Security 7.1 through Threat ...

 (view in My Videos)Struggling with alert fatigue, lack of context, and prioritization around security ...

Troubleshooting the OpenTelemetry Collector

  In this tech talk, you’ll learn how to troubleshoot the OpenTelemetry collector - from checking the ...