I'm trying to pull the license usage with a script on my Splunk server and send a notification to Teams (along with a bunch of other information about my server along with it). I did some research, and found the license_usage.log files. There were 6 files. I was guessing b=integer was the number of bytes used, so I threw together a python script to add up all of those bytes listed in all 6 files, and got 68GB. My actual usage was 52 GB. my license_usage.log.3 had 54GB in it, but that was as close as I could come to the actual 52GB. I'm assuming I'm not looking in the correct place, or I'm adding up multiple days. I've combed Splunk documentation for what these files are, but all I'm finding is a bunch of the same Splunk query that says something about accessing this file and taking the sum of b to get the license usage.
Does anyone know how I can just pull the license usage from yesterday without running a query in Splunk? I know I can just run the query remotely with a script and use the output, but I would like to do it this way instead if it's possible.
... View more