Splunk Cloud Platform

How to get the data from Splunk with using of SPL query

raghunandan1
Engager

Hi Team,

We have 800+ servers contains windows & Linux servers. How to get the data from Splunk with these details O/S version, Allocated Storage (GB), Utilized Storage (GB), Uptime %, CPU Utilization Peak %, CPU Utilization Avg %,  with the help of SPL query .

Can you please help us on this requirement.

Thanks,

Raghunadha.

0 Karma

PickleRick
SplunkTrust
SplunkTrust

And what data do you have in your Splunk? How should your Splunk know about all this?

0 Karma

raghunandan1
Engager

We have using for windows servers index=windows and index=perfmon. For Linux servers using index=os . These servers having data memory utilization and CPU, performance data.

0 Karma

PickleRick
SplunkTrust
SplunkTrust

Index names don't matter here. It's about the data in indexes.

Anyway, perfmon data does not include OS version as far as I remember so you need to make sure you have this ingested another way.

What data you have in your linux index is beyond me - you should have it docummented somewhere. I suppose you have TA_nix deployed across your environment and some inputs enabled but we don't know which ones and what data you're ingesting.

So the question is what data you _have_. If you know this, you'll probably know what to search for yourself.

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Introducing Splunk 10.0: Smarter, Faster, and More Powerful Than Ever

Now On Demand Whether you're managing complex deployments or looking to future-proof your data ...

Community Content Calendar, September edition

Welcome to another insightful post from our Community Content Calendar! We're thrilled to continue bringing ...

Splunkbase Unveils New App Listing Management Public Preview

Splunkbase Unveils New App Listing Management Public PreviewWe're thrilled to announce the public preview of ...