Splunk Search

How to search for disk usage greater than 70 percent for 10 mins?

londonColney
Loves-to-Learn

I wanted to know how we can construct a search query for a service which is running on a centOS server and the utilization has exceeded 70 per cent for last 10 mins ? We are supposed to create an alert if such kind of situation arises? Any help would be greatly appreciated.

Tags (2)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Have you considered Splunk Add-on for Unix and Linux from SplunkBase?

0 Karma

londonColney
Loves-to-Learn

@ITWhisperer No I have not considered it.

0 Karma
Get Updates on the Splunk Community!

SOC4Kafka - New Kafka Connector Powered by OpenTelemetry

The new SOC4Kafka connector, built on OpenTelemetry, enables the collection of Kafka messages and forwards ...

Your Voice Matters! Help Us Shape the New Splunk Lantern Experience

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Building Momentum: Splunk Developer Program at .conf25

At Splunk, developers are at the heart of innovation. That’s why this year at .conf25, we officially launched ...