Does any Splunk app give per process metric information on Windows and Linux host? We have deployed Splunk App for Infrastructure on our hosts. It has system level metrics but it doesnt give you process level metrics. Any help on this would be great. Thanks
This feature is planned for Splunk App for Infrastructure. It will enable process monitoring.
This feature is planned for Splunk App for Infrastructure. It will enable process monitoring.
Thanks for the information. Is there any alternate way until this feature is made available?
You can try "Processes" plugin in collectd and see if you can get what you need. You can look into collectd documentation to learn how to configure it. you will have to add it to your collectd.conf and restart. This is for Linux host.
For Windows host, you should already have perfmon "Process" data coming in. In the "Analysis" UI page, you should be able to split by "instance" (option on the right). This will provide you per process metrics.