Monitoring Splunk

iops Performance Data

rtanninen
New Member

Hi everyone, I am brand new to Splunk and have a question. I have a powershell script that grabs the windows counters to get iops (Input Output per second) and was wondering how I would search using splunk to find the iops for the cpu, ram, hdd?? What would be the best way to go about it? Thank you so much for the help.

Tags (1)
0 Karma

dwaddle
SplunkTrust
SplunkTrust

Actually, that makes things muddier 😞 - why would you not install a forwarder on the other computer and have it deliver data to your indexer automatically? Have you looked at the stock Splunk for Windows app? http://splunk-base.splunk.com/apps/22315/splunk-app-for-windows

0 Karma

rtanninen
New Member

Let me explain, I want to run the script on another computer, let it run for an hour and then have it E-mail itself to me, then I put that data into splunk. What I am asking is how do I search for or terms to use to get a proper iops read? Hope that is a little clearer.

0 Karma

dwaddle
SplunkTrust
SplunkTrust

I am a little confused by your question, but I'll take a stab at it. The term "IOPS" really only has context with respect to input/output devices (that's what the "I" stands for).

That aside, there's more than one way to get this type of data into Splunk. Splunk can (natively) poll Windows counters, or it can pull similar data using WMI queries. This is how the Splunk for Windows apps work, and they already have collection mechanisms and dashboards for this type of data.

Finally, any script you have that can produce textual output can be run as a scripted input into Splunk, making your existing powershell script usable.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...