- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Good Morning
Does anyone currently use Splunk or an App in Splunk to monitor folder size?
We are currently been asked to set up new folders for fileshare for various teams and as our storage resource are near end we'd like to monitor each users' folder size.
The ideal scenario would be that there would be a threshold in size put on each folder and when the folder is near capacity then an alert would trigger and the IT Team would take action.
Kind regards,
Paula
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi
I can't think of any app that monitors user folder sizes, but it wouldn’t be that hard to set up.
Possible High-Level Steps:
- Determine your OS is it Windows / Linux
- Based on the OS, you can use various Linux command’s + bash script to monitor user folder sizes on a regular based and output that data into a text log file with a timestamp, you can do the same if its Windows and use a PowerShell script.
- The log file can be monitored at various intervals by Splunk UF + inputs.conf and Props.conf
- Once the data is in an index, you can set up thresholds and alerts.
Yes, a bit of homework and scripting, but that’s the flexibility of Splunk and not that hard to do, and you would have created your own private TA
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hi
I can't think of any app that monitors user folder sizes, but it wouldn’t be that hard to set up.
Possible High-Level Steps:
- Determine your OS is it Windows / Linux
- Based on the OS, you can use various Linux command’s + bash script to monitor user folder sizes on a regular based and output that data into a text log file with a timestamp, you can do the same if its Windows and use a PowerShell script.
- The log file can be monitored at various intervals by Splunk UF + inputs.conf and Props.conf
- Once the data is in an index, you can set up thresholds and alerts.
Yes, a bit of homework and scripting, but that’s the flexibility of Splunk and not that hard to do, and you would have created your own private TA
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
