Splunk Search

Calculate disk space growth over time

jackpal
Path Finder

I am providing summarized reports on disk space over several hosts using this query:

index=os sourcetype=df host=host1 OR host=host2

| eval CPD_Disk=case(
filesystem LIKE "%gas%", "Gas Volume",
filesystem LIKE "%cadbas%", "CMS Volume",
filesystem LIKE "%spg%", "SPG Volume",
filesystem LIKE "%gen%", "Generator Volume",
filesystem LIKE "%stm%", "Steam Volume"
)
| chart eval(sum(UsedMBytes)/1024/1024) as TerraBytes by CPD_Disk| addcoltotals TerraBytes labelfield=CPD_Disk label=Total

I would like to provide the total amount of growth over the past 30 days. How could I add something like this ?

0 Karma
Get Updates on the Splunk Community!

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

Splunk Decoded: Business Transactions vs Business IQ

It’s the morning of Black Friday, and your e-commerce site is handling 10x normal traffic. Orders are flowing, ...

Fastest way to demo Observability

I’ve been having a lot of fun learning about Kubernetes and Observability. I set myself an interesting ...