From e0ba6bc584a337a79a462c8d3d9e532115eeb353 Mon Sep 17 00:00:00 2001 From: admingit Date: Fri, 23 Feb 2024 10:17:16 +0100 Subject: [PATCH] Update --- .DS_Store | Bin 6148 -> 8196 bytes deployment-apps/.DS_Store | Bin 22532 -> 34820 bytes .../Splunk_TA_windows_dc/local/inputs.conf | 65 ++++++++++++++++++ 3 files changed, 65 insertions(+) diff --git a/.DS_Store b/.DS_Store index 3164b764e0ce315258afd13ef6c24b22f00cfb07..03435611f11bc849be1b02e5ac70fe67b4a0b6b1 100644 GIT binary patch delta 794 zcmaJg`COs9`BGMzWh3?Q=T zLKeC)A(OaZgNeqa327u6O<=>)L>4S`;~!w*&S*^Zy%ti`#KoI)=G=SFeIIwFe`O>N z0GOFC4*+l~vBgntUsYqPsk5kT~njOe%v}&;$7)oq=55*U_>Gk^W`D4q=mo9kg{?qu# z+hX6xo)YM(>Dq$T?1vvpmZ3XtfBzR*MxP-113@X&)*e1~yhBzxyOf9$jmA#IqunRF z6GgeJq-t{&o6ei%%haHD#+WAsU881Re?ST@x$kmPlso^*8z<#EEvYuKWU-`3OKF&0 zwFxnARcyVSotbfnTR6g}igJge+0-y{)X`m?np4xxEL|LPNp;Mep{(VCP8PEk4>^;> zb{PIsQ@CxYC1TXFW`?>htxl=7t(p~*S>mbOjvXau6K>ULp0`v@H!I2Eul#BOk|Vi8 z(%U35B%6c>SDrPv6giX*5JM9tHAyHra)T?=Y)Q}uX}At~n1w}n0&DOR-oOrghJE;f zBF3->`|vyt;xJyrn>dadmQlyMO-mm(5l$W80ieSlST-uHf!KTdeu#-FX@Bzjuh*M9 zY4&r@n+voZ6?(k&Kv?{g-v(Y^-wj;E4J+VNgr;x2o#7Qe*>y$wCU_l@F)tgIB(@7a Q^xzf4PwQe(U`2xOH#_Cg>Hq)$ delta 285 zcmZp1XfcprU|?W$DortDU=RQ@Ie-{Mvv5sJ6q~50$SANeU^g?Pz+@f)iFo~nH&Z}z z40;Ud44Diix%nOPr)l+kYN~{oS$0&)Wcv9{$O&mz!Jvo zlQjej*~F`>jV#S4&l8kq?3}z0NOnzj6j7S|TbPGs&Sx%TAV+1gz6ci^&z2WbToWhT zix?o7DwAi5@UYCkwt)epXY*+hGsea292|noAZviW;|3D0ARlf_{LVa?U&a&UUj`j7q%Fp5=R64`m-y~~xbC>KU zA<^oNj-#W_kWeTnt!xW+0F?yVQm``62qIcan9*3LWx(QSiUs4;8Whkz&-wn|_ulW` z`~77`+k4^O@9xcc-}64tdC&RId;UISOzxuH!{-_^ZH$?NH?OVD#?&<#(}`<0-rkG< z&UeYH9>3)9|LwRUL8~!c=5oBRHkX=BC8=va{H`%j2ZLte-GKLE({0XE<(D_ZX2eXG zF;g)6@NJjLn?W;RCe6rrVR-Z4SYZ%yb7o#y{~zbP@5zn$-iY^7v)OEfo=f2cefaEx zC-mZT!0d%&7j#m?c4#W#+b;Y)IkxTGzM;bS1f)$}_o4UVLaUaS(KKmo+HH249nd!k z+jg2MXdJ=ks2S4w%!*fEgRa?lx0!LI&clvTNDL!?T9k(s!}u(~q7OmG5VTBAY!58T z^_+mPtpH~O5&3ZP&f~9*knDrZC?sjcsM%_5$OH2}YgGZi=OM#9cbgmW{YJCSti^S$ zIbZTPdhni((+*l5Q3p|(bY556y!HUYUd!8vw9(8=m|VBT7$!9Ut4G1rE^Flg>==V> zwO5US8Uz2I8Nj`puQ_v_YwfefK#hSK13m+6A3E{owa2|qJ6GFu;DcRA{yV#n_J!|= z1MF{|?zP9gPCHjC3K=Vkt0S6oLyVjwj^8_(9M>NAI_+E?ag%ezP0r0Z=SC*w> zZE}Y1!u<N#qso)=uJH9?4HQ zZa9QiW6b)>PF(jX9?Zl4l17*06F@_0#Xo8&1AeTp}8g1oK3c%vLYbnYM{W{*31 zI0VKx=9))3jzkXNo=g7r;qTF+an1VCN7HMR9Nu}zzyGAPQ!<&IR>fz-4EfY`U?aGl zFk5WvwLuiW& z@Q(s|XH)KY_+-d^+I)+5r-+gg^B)g>%d1il{K3X0pA9LKf8_s}C!SlDPdYxA`>S%e6$8 zEWb+WlwCP%7j3J(Y7G27GOz(gpN_fTZnQ6bXlJgrv$akipTAsUHmO=>40~-=BxIfY z;c| z-@D((9a%cS9A7#F@1i2SM9I<~wLNRbsuLEw?gtw4ED%SQm6%6A0mkk?$}aYLgIYwejg{>tqS=_Y|*7O9y^}UiF~*QXCvBRuAF&4@Gt^&)@$U^ z!)Fb4)_*Wg+=W{0jLc3T4c4s`)#&d6acZ5Cli5%BoMfOks1I4{)x6sFu*2o`GI$DC z4ebMKak(4-mx=U9{!TvQ^OsOpz*$;dAv~>cc?#C>anyGV{}uB^9=GAwg7v#_?|Tf4 zrPL_7yZd3k%}uQ}U@<$bA$ zR;hLPcW|4DUdivX?*g}pbxA(wANTo8p)cSt z3wv6gkee#$2nt*`H$< zYqetW2O^Kr(3YWcuXP?QN~uwn=bG33@=UEYDEI8NYCdg$bybKz zJN;FT^=`902*&Yo`>-p)Y-YM8$CHg4ygdLJ>JQjH75YPXUmC)@7h4Y5$hu0)yYwM2 zoIs1@a^duUdhvB4O#y4^G--bN0jwf2HQE5*481cg{Y5e@lAqpA-`6VfQ^p?IYf7g{ z^V36q!uoV_=SST7%2idVbxQ8;U+r_3f!@H=vec`2we8`Okb22IM0xb*~G^ z9%Ji}ymejZ^OitQz*8DMnwK6x!YZ56JzEYhPOBA(o!r6Xnj}X@KHzhd&@Ndw(`(aw zsc|3~%Q<{S9y!f%Cz&^P6HAZe>h2qSt`h1Bd@8N35T3$fCpFKWpzrYx@Ro^Q$>XaZ z@p;Thcff1bxTm~|+3x7LvdaN6w?NqhHYn@f$9>Hle=Cy$K#|*J`!M zq|+vO=>6J-9uFz(lN@EEQSxV=?;(F@mgSFiiM5R@H@q5FROh6(nE59;zne;*-Fv>I~YataK_K7ulX%xieqvzOxb@#cm44;l;=91c!-rN&Y_Z$;&+cQs@h~%R-;x z?UEM(wJcV<`vEnT(Nxv5cTC5!C24d?-qy5VRgJf*w#k~Cg+9gGvL5o*Ql{Rr&g!1w zX)k=ET6&59w^#Ie_$%fiF-Db9IOfg}M_U;jeb_1Resc|0lWoGcE6kO}d(pNXi6<>F z9$$5xhcQO}5^*vO3jgV?#NS>9KS%c%^^Mq`Fxy|dhgr22i`TszUxVaf`CWOBhnRLq zE|P0ed@MadKFakQxK9XtX#591SY1Nm9bPo(;jNO7#1~yk;c4$Bo)u-wH`q_t1#E*D zF=KCb4^R%G4s-Tpswn1v>53nw*C_co)_a4;M@l;-U)gC@d>((%*hrnM@^um3bdn}~T7u+ec(5H~E>>=KABNRMAZWNv~j5{S;40w%=jwZ~wsx5DM*=AdgjxsfkBM7)BR_{eLeElJw1DHsU_c(}af69 z-4~jlYr8FtF3H6YHvF^4MPl0|Ls{sPyfyzTX)_DT)E_l}raYr*dSO&K$;YdG{@8P* zJSFzHvJ$5`t&=#*MdS)+bq_JW{N4lUv`J15_4=Houun3TjYh@ao89DZVTqsgiN5Nk zp*_`xne(DcN?wj!@ADEdU&%pyX@$43pLl1ZU*?^2fYk}A1~k0mE2Sx<{l`u`?d?G? z(j)CGpGwANS{+l@4i1xircS49?=Uz+J`1{c1dM zmwgcD6k5hCd2lvr_A9pLKl+iVa?e zz1^Z^l*XNFMP~tE?*uBe~tC--pMr;j|i<1u=KiN2C{czql>h3mJ6S-sU()wf9+!lO&NGv<&?_W zrcPuG-{KC#op#oV`{x*?ht-zmty~dRA+@yk@4w{RTTvpgJDP;Df1b7fO!qG5oX_LT z1v%?(x`2%Pc_!VK5O+Ydie*>knD*ryuT7;-a?ow^-rA#-Is=xn(y4e{asaS#{tHjs z@4}fB```iaR9O?vtUqDtm!y$+&+7P@x3)ecU4WrdI%U`FqqK|XH7dJcqd(S+(!?B~ zwsalqQv@k#`(1zevS)iF$pB3}NsVus_~yCz*h6#fRU@_*7N5ZLzVC8mwL)r%XWa$A z_V84c2yjG`Q1)MOg7)*QE|!mTjuQK2+&#~+tV*Rc@9F2`$VzPAzQgyk$a%|FJ&C-+ z-O^3m3oUN;F!;O&_OiUS9h{5iNeQJrj@*`~qf1K6hgSLhj)?h6#POvS-g?_UEUDL`DxA)_lV<@Z?-3lOmhset zz0VM}I2Ft*Wn8_;LyYUIcB%1+wO}Jd?UJ)6*1zDz@R{ZiFnelpQ2fub?a6HLzY`_E ze(qG!UFe0C96cyXA$j<-zc}vkP?9RZQa+Wk=NE^O8TRyv5=E=F24hQH+vfJ=@ZFhf z_oA&XSY3eijJdhGoHHGz;|yP$vnxy8l7nYn`l-i3X12@LxUnArz8Hq0~@ix76f_RJ1rM?{N^Yhr5 zz_@P=tuEp{*`73ZuY4++l*HNfu`}A;Gd3gSCo#s8l=vDqzDRsaRXyT;vvl>AcMs)E zIwE+97aDl)OrS;LANZ_4zL-c;(1xVbB>8cl>A-%P^gHMISDWDVdawP1XK+PDh13%7 zr3L?9T2Ugv6-`3f|8NfsGMPWWOP2o4-}vNnry>u@mG_LWfQ!`e|LRj=v*iBPOS;K@ zM~UxnRCG7)QFes}+L4QGyXieg&5jUCep}AI@W)B@NDi;u>-$?Gn`DcVR+r?dL^reMxjk{P*m;&%+uuj~_P3fjkXniM~cGXRDakzwUsksq*hC1MgjDOIlkZP?M1UZdpg z=O@4F@s`p~=}*~d)qL9axH#7Ep110p8f;HFQ*~(Gk2p6OK}z!S@a^||yhM@={3o8I z!q?IdLop8<<}Z8D2XlH{Ts2$HKjuAuL3|Ao_g{VbkcT^_9kTqBYtel4l8>s-*Hxu` zM;pfptI9~sliiPam?OvqCGE>$WkoueH1U!@=?5>#+&I5xYrr?`Z%wA<*XK7shw9V zjw{9acdL8tbgw<`b=tYQImdnwa4>S<%!-AKCCGkP7V*05iDjWr_RUN!{;$RVoP}dw IEJpnQzfz8r$p8QV delta 568 zcma)3O=uHA6rS0c-EPx0J7u$&XoS>iG1?}p7=Iu_TdW9*TF9Z4z_v|6Q=!=?NCb6mG8J$%gHbF89yPI1I)Sy4Pc6K!9>q#c z;AQz3*2+CHW_w(wc$>;Do7*&yt2NWa{Jnm>W&*3V1b&Mnh~GYdn_>skvGejqEX}|Y zY56n0Ns&!v@#%0&`usYh7trj>$VlHdr#l!PxFRzHAG_fhmz547A9#&wf#zj1_`(cp z3ens-te<^~4<{4Y%njj1+Lh08zbv^l5vSNKX7RY#f)`e;;*+n3A`L8ud3(=&GXfE2 zkYYZ}l8d)9ue#OB9m&a!(kTP2*=sT~dx@bn*DojMwkh0&aa^rLjrn(Q77BP?iFNQH zJE%&bCG=?@LilK_v0IB#i#*y-$@XF|H^}$S|9#Fo2x=o-6$RYz?*BaRxSrmnjbg4x znX!HL2uUdx1Es@`?Bzcg-1@~q-A4&A{-VB12b%Z^?Q2o>DUGN&4{-m^*1xNc{Q)+J BpXLAn diff --git a/deployment-apps/Splunk_TA_windows_dc/local/inputs.conf b/deployment-apps/Splunk_TA_windows_dc/local/inputs.conf index 3ea2d550..aa5ce685 100644 --- a/deployment-apps/Splunk_TA_windows_dc/local/inputs.conf +++ b/deployment-apps/Splunk_TA_windows_dc/local/inputs.conf @@ -211,3 +211,68 @@ disabled = 0 mode = single useEnglishOnly=true index=perfmon + + ## Logical Disk +[perfmon://LogicalDisk] +counters = % Free Space; Free Megabytes; Current Disk Queue Length; % Disk Time; Avg. Disk Queue Length; % Disk Read Time; Avg. Disk Read Queue Length; % Disk Write Time; Avg. Disk Write Queue Length; Avg. Disk sec/Transfer; Avg. Disk sec/Read; Avg. Disk sec/Write; Disk Transfers/sec; Disk Reads/sec; Disk Writes/sec; Disk Bytes/sec; Disk Read Bytes/sec; Disk Write Bytes/sec; Avg. Disk Bytes/Transfer; Avg. Disk Bytes/Read; Avg. Disk Bytes/Write; % Idle Time; Split IO/Sec +disabled = 0 +instances = * +interval = 10 +mode = multikv +object = LogicalDisk +useEnglishOnly=true +index=perfmon + +## Physical Disk +[perfmon://PhysicalDisk] +counters = Current Disk Queue Length; % Disk Time; Avg. Disk Queue Length; % Disk Read Time; Avg. Disk Read Queue Length; % Disk Write Time; Avg. Disk Write Queue Length; Avg. Disk sec/Transfer; Avg. Disk sec/Read; Avg. Disk sec/Write; Disk Transfers/sec; Disk Reads/sec; Disk Writes/sec; Disk Bytes/sec; Disk Read Bytes/sec; Disk Write Bytes/sec; Avg. Disk Bytes/Transfer; Avg. Disk Bytes/Read; Avg. Disk Bytes/Write; % Idle Time; Split IO/Sec +disabled = 0 +instances = * +interval = 10 +mode = multikv +object = PhysicalDisk +useEnglishOnly=true +index=perfmon + +## Memory +[perfmon://Memory] +counters = Page Faults/sec; Available Bytes; Committed Bytes; Commit Limit; Write Copies/sec; Transition Faults/sec; Cache Faults/sec; Demand Zero Faults/sec; Pages/sec; Pages Input/sec; Page Reads/sec; Pages Output/sec; Pool Paged Bytes; Pool Nonpaged Bytes; Page Writes/sec; Pool Paged Allocs; Pool Nonpaged Allocs; Free System Page Table Entries; Cache Bytes; Cache Bytes Peak; Pool Paged Resident Bytes; System Code Total Bytes; System Code Resident Bytes; System Driver Total Bytes; System Driver Resident Bytes; System Cache Resident Bytes; % Committed Bytes In Use; Available KBytes; Available MBytes; Transition Pages RePurposed/sec; Free & Zero Page List Bytes; Modified Page List Bytes; Standby Cache Reserve Bytes; Standby Cache Normal Priority Bytes; Standby Cache Core Bytes; Long-Term Average Standby Cache Lifetime (s) +disabled = 0 +interval = 10 +mode = multikv +object = Memory +useEnglishOnly=true + + +## Process +[perfmon://Process] +counters = % Processor Time; % User Time; % Privileged Time; Virtual Bytes Peak; Virtual Bytes; Page Faults/sec; Working Set Peak; Working Set; Page File Bytes Peak; Page File Bytes; Private Bytes; Thread Count; Priority Base; Elapsed Time; ID Process; Creating Process ID; Pool Paged Bytes; Pool Nonpaged Bytes; Handle Count; IO Read Operations/sec; IO Write Operations/sec; IO Data Operations/sec; IO Other Operations/sec; IO Read Bytes/sec; IO Write Bytes/sec; IO Data Bytes/sec; IO Other Bytes/sec; Working Set - Private +disabled = 0 +instances = * +interval = 10 +mode = multikv +object = Process +useEnglishOnly=true +index=perfmon + +## ProcessInformation +[perfmon://ProcessorInformation] +counters = % Processor Time; Processor Frequency +disabled = 0 +instances = * +interval = 10 +mode = multikv +object = Processor Information +useEnglishOnly=true +index=perfmon + +## System +[perfmon://System] +counters = File Read Operations/sec; File Write Operations/sec; File Control Operations/sec; File Read Bytes/sec; File Write Bytes/sec; File Control Bytes/sec; Context Switches/sec; System Calls/sec; File Data Operations/sec; System Up Time; Processor Queue Length; Processes; Threads; Alignment Fixups/sec; Exception Dispatches/sec; Floating Emulations/sec; % Registry Quota In Use +disabled = 0 +instances = * +interval = 10 +mode = multikv +object = System +useEnglishOnly=true +index=perfmon \ No newline at end of file