Hello All,
I am using Splunk version 7.1.0 for the Distributed Management Console (DMC) and I want to calculate the license usage by host. I am using the below query:
index=_internal source=*license_usage.log* type="Usage" |search h=*10d*
| eval h=if(len(h)=0 OR isnull(h),"(SQUASHED)",h)
| eval s=if(len(s)=0 OR isnull(s),"(SQUASHED)",s)
| eval idx=if(len(idx)=0 OR isnull(idx),"(UNKNOWN)",idx)
| bin _time span=1d
| stats sum(b) as b
How can I get the value of "b" in GB? I am confused by the value of "b" . Is it in MB or any other metrics?
Hi,
Please try this
index=_internal source=*license_usage.log* type="Usage" |search h=*10d*
| eval h=if(len(h)=0 OR isnull(h),"(SQUASHED)",h)
| eval s=if(len(s)=0 OR isnull(s),"(SQUASHED)",s)
| eval idx=if(len(idx)=0 OR isnull(idx),"(UNKNOWN)",idx)
| bin _time span=1d
| stats sum(b) as b
| eval GB=round((((b/1024)/1024)/1024),2)
Thank you for your reply but what is the unit of b ?
b
is in bytes
The value of b is 256722093 for the last 60 minutes