Splunk Dev

Resource usage for multiple hosts, grouped together.

andrei1bc
Communicator

Hi,

Would it be possible to group hosts resource usage in a standard dashboard , similar to the DMC 's stats. :

Example:

alt text

But have data from forwarders and not Splunk hosts ?

Using Splunk 6.6 and Heavy Forwarders that send in all data.

Regards,

Tags (1)
0 Karma

seancruikshanki
Explorer

Hi there,

I don't think the ability to monitor resource usage is native in Splunk forwarders, but you can install Splunk official apps that certainly can, i.e. (Splunk add-on for unix and Linux (or whatever OS you require)). The grouping of these values can be easily done with searches i.e. (host1 AND host2 | timchart cpu_usage).

0 Karma

andrei1bc
Communicator

More interested in the grouping as in the image above.

0 Karma

seancruikshanki
Explorer

It might not be the cleanest way but you could possibly use a series of single value visualisations, other than that I'm not really sure.

0 Karma
Get Updates on the Splunk Community!

More Ways To Control Your Costs With Archived Metrics | Register for Tech Talk

Tuesday, May 14, 2024  |  11AM PT / 2PM ET Register to Attend Join us for this Tech Talk and learn how to ...

.conf24 | Personalize your .conf experience with Learning Paths!

Personalize your .conf24 Experience Learning paths allow you to level up your skill sets and dive deeper ...

Threat Hunting Unlocked: How to Uplevel Your Threat Hunting With the PEAK Framework ...

WATCH NOWAs AI starts tackling low level alerts, it's more critical than ever to uplevel your threat hunting ...