I saw some CPU usage spike on my all-in-one Splunk server 6.5.x and would like to figure out which individual ad-hoc/scheduled search, e.g. search name, causes it in last 24 hours. How to figure it out?
P.S. some discussions spoke about "perfmon" index, but my Splunk server does not have that index.
↧