Splunk will track the top 10 inputs based on source and host. To retrieve that information, you could run the following search:
index=_internal source=*metrics.log* per_host_thruput | timechart sum(kb) by series
To increase the number of tracked inputs, you can set that in your limits.conf file for metrics tracking.
... View more