Monitoring Splunk

Splunk reports wrong cpu count

vanvan
Path Finder

Hi,

We are running Splunk on RedHat 7.x VMs and originally the VMs had 2 cpus with 2 cores each. In DMC and in REST service "| rest splunk_server=local /services/server/info" the output is that we have 4 cores in total. Recently we've upgraded the VMs to have 4 cpus and we were expecting to see that we'll have 8 cores available in total. But it doesn't seem so.

Any ideas why? We have restarted Splunkd and the whole VM. The outputs of linux commands in SSH like "lscpu" or "cat /proc/cpuinfo" show that there are 4 cpu's installed in the VM, but Splunkd still doesn't notice them...

Euphrates
Engager

I am experiencing identical problem. Haven't been able to find answer online nor get in contact with Splunk support. Splunk isn't noticing my extra cores after I upgraded instance. Now I'm having performance issues like hot buckets rolling prematurely and the speed of concurrent searches is suffering.

0 Karma
Get Updates on the Splunk Community!

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...

AI for AppInspect

We’re excited to announce two new updates to AppInspect designed to save you time and make the app approval ...

App Platform's 2025 Year in Review: A Year of Innovation, Growth, and Community

As we step into 2026, it’s the perfect moment to reflect on what an extraordinary year 2025 was for the Splunk ...