I'm not looking for events per second. Let me reiterate.. if some event happened then I need to count that second. For example, if for host X I had events in the following milliseconds -
19:00:45:000
19:00:45:030
19:00:45:150
19:00:46:180
19:00:46:240
then for 19:00:45 i'll get 1 (more than 1 event happened in that second so I'm counting that second) and for 19:00:46 i'll get 1 (again, 2 events happened in that second so I'm counting that second).
Eventually, for host X in that time frame the final result will be 2 because we found 2 seconds that had events.
The same should be done for the rest of the hosts.
End goal is to calculate overall system uptime. uptime is defined as time w/o any events. so we wish to calculate uptime for each host and then average across all hosts.
Hope that clears things up now.
Thanks again.
... View more