Splunk Search

Request for information on CPU information app in Splunk Enterprise Security

balu1211
Path Finder

Hi there!

I was wondering if there's a specific app available in Splunk Enterprise Security that can provide CPU information. Specifically, I'm interested in getting process utilization info from an Mfg server.Request for information on CPU information app in Splunk Enterprise Security.

0 Karma
1 Solution

woodcock
Esteemed Legend

The right answer here is to use "IT Essentials Work" (and "IT Essentials Learn" to help).

View solution in original post

0 Karma

VatsalJagani
SplunkTrust
SplunkTrust

@balu1211 - If you are new to Splunk, here is my general advise to find answers yourself or form questions better:

In Splunk if you have any requirement, you search for answers in modules:

  • Data onboarding:
    • Do I have data for what I'm asking in Splunk?
      • And ask about the product name and not the use-case first.
      • For example, CPU performance information is totally different for Linux OS, Windows OS, and Oracle DB, etc, etc.
      • So, ask specific, search with specific keywords of product.
    • If Yes, go to the next module. If No, search for "how to collect data for X in Splunk".
  • Visualization:
    • I have the following data in Splunk, how to visualize it in Splunk?
    • 1. I have a specific requirement to create chart:
      • Write your own search query and build a dashboard.
    • 2. I want something out of the box.

 

I hope this helps!!! Upvote if it does!!!

woodcock
Esteemed Legend

The right answer here is to use "IT Essentials Work" (and "IT Essentials Learn" to help).

0 Karma
Get Updates on the Splunk Community!

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...