Splunk Cloud Platform

Filtering out NFS mount

solution88
New Member

Hello,

Splunk is integrated into our monitoring system. AWS EC2 sends information to Splunk then Splunk will send alert to the monitoring system.

Currently we have an issue with NFS drive. When a low disk space alert comes in, we received multiple low disk space from other NFS mount. Is there a way to filter out other NFS? And Splunk will only send alert about root drive low disk space to our monitoring system.

Thanks,

Tags (1)
0 Karma

adonio
Ultra Champion

yes there is,
please share some more information.
what is the search that generates current alert? how does the data looks like?
do you use alert throttling? what is the anticipated result?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...