Splunk Dev

Resource usage for multiple hosts, grouped together.

andrei1bc
Communicator

Hi,

Would it be possible to group hosts resource usage in a standard dashboard , similar to the DMC 's stats. :

Example:

alt text

But have data from forwarders and not Splunk hosts ?

Using Splunk 6.6 and Heavy Forwarders that send in all data.

Regards,

Tags (1)
0 Karma

seancruikshanki
Explorer

Hi there,

I don't think the ability to monitor resource usage is native in Splunk forwarders, but you can install Splunk official apps that certainly can, i.e. (Splunk add-on for unix and Linux (or whatever OS you require)). The grouping of these values can be easily done with searches i.e. (host1 AND host2 | timchart cpu_usage).

0 Karma

andrei1bc
Communicator

More interested in the grouping as in the image above.

0 Karma

seancruikshanki
Explorer

It might not be the cleanest way but you could possibly use a series of single value visualisations, other than that I'm not really sure.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Deep Dive: Accelerate threat investigation with Splunk’s AI Assistant in Security

AI is one of the biggest topics in the market today, and for security teams, its value goes far beyond the ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Detection Engineering Office Hours: Real-World Troubleshooting & Q&A

[REGISTER HERE] This thread is for the Community Office Hours session on Detection Engineering Office Hours: ...