Agent pipeline
0readings
0conditions
0themes fed
Livestatus
The agent spool and delivery pipeline: how much is queued and when it last drained.
Topic id: agent_pipeline.
Full inventory on its own schedule. Supported changes are reported when the agent observes them.
Fields
Queued data, spool usage and recent delivery progress.
| Field | Type | Unit | Meaning |
|---|---|---|---|
sparklogs.data.agent_pipeline.agent_version | string | The agent version, plain semver, without build metadata. | |
sparklogs.data.agent_pipeline.agent_build | string | The agent build: semver plus the commit this binary was built from. .dirty means the tree was modified. | |
sparklogs.data.agent_pipeline.cpu_pct_of_one_core_avg | float | percent | Mean of the combined agent and Vector CPU percentages measured between consecutive captures, relative to one logical core. Includes whichever processes were measured in each interval. |
sparklogs.data.agent_pipeline.cpu_pct_of_one_core_p95 | float | percent | 95th percentile of the combined agent and Vector CPU percentages between captures, relative to one logical core. |
sparklogs.data.agent_pipeline.working_set_avg_bytes | integer | bytes | Sum of the agent and Vector mean resident working sets over the window. Includes available readings. |
sparklogs.data.agent_pipeline.spool_dir_bytes | integer | bytes | How many bytes the agent's event spool currently holds. |
sparklogs.data.agent_pipeline.spool_pct_of_cap | float | percent | Spool size as a percentage of its limit. May exceed 100 because the limit is enforced after a write. |
sparklogs.data.agent_pipeline.spool_growth_mb_per_h | float | megabytes_per_hour | The spool's growth rate in MiB (1,048,576 bytes) per hour, fitted from its recent size readings. |
sparklogs.data.agent_pipeline.spool_last_drained_at | string | timestamp | The last instant the pipeline was known to be caught up. Absent when no such instant has ever been observed. |
This topic reports what the host looks like rather than scoring a condition on it. The values it carries are queryable on their own.
Example
Inventory
combined working set 96.0 MB, spool 3.5 MB (5.47% of 64 MB cap), last caught up 0h02m ago.
SparkLogs: CONTEXT, Info, agent_pipeline: INVENTORY: combined working set 96.0 MB, spool 3.5 MB (5.47% of 64 MB cap), last caught up 0h02m ago.