Splunk Dev

Resource usage for multiple hosts, grouped together.

andrei1bc
Communicator

Hi,

Would it be possible to group hosts resource usage in a standard dashboard , similar to the DMC 's stats. :

Example:

alt text

But have data from forwarders and not Splunk hosts ?

Using Splunk 6.6 and Heavy Forwarders that send in all data.

Regards,

Tags (1)
0 Karma

seancruikshanki
Explorer

Hi there,

I don't think the ability to monitor resource usage is native in Splunk forwarders, but you can install Splunk official apps that certainly can, i.e. (Splunk add-on for unix and Linux (or whatever OS you require)). The grouping of these values can be easily done with searches i.e. (host1 AND host2 | timchart cpu_usage).

0 Karma

andrei1bc
Communicator

More interested in the grouping as in the image above.

0 Karma

seancruikshanki
Explorer

It might not be the cleanest way but you could possibly use a series of single value visualisations, other than that I'm not really sure.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Automated Threat Analysis: Available in ES Premier

Automated Threat Analysis: Centralize and Accelerate Phishing Investigations in Splunk Enterprise ...

What’s New in Splunk AI: Volume 02

Welcome to the second edition of “What’s New in Splunk AI” where we look at the latest and greatest updates, ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...