Splunk Search

How to search for disk usage greater than 70 percent for 10 mins?

londonColney
Loves-to-Learn

I wanted to know how we can construct a search query for a service which is running on a centOS server and the utilization has exceeded 70 per cent for last 10 mins ? We are supposed to create an alert if such kind of situation arises? Any help would be greatly appreciated.

Tags (2)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Have you considered Splunk Add-on for Unix and Linux from SplunkBase?

0 Karma

londonColney
Loves-to-Learn

@ITWhisperer No I have not considered it.

0 Karma
Get Updates on the Splunk Community!

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...

New Year. New Skills. New Course Releases from Splunk Education

A new year often inspires reflection—and reinvention. Whether your goals include strengthening your security ...