Volume map
0readings
0conditions
0themes fed
Livestatus
How volumes map onto devices and partitions.
Topic id: volume_map.
Full inventory every hour. Supported changes are reported when the agent observes them.
Fields
Connect volumes to their partitions and backing storage devices.
| Field | Type | Unit | Meaning |
|---|---|---|---|
sparklogs.data.volume_map.volume | string | The volume's stable identity, the same identity disk_volumes uses. | |
sparklogs.data.volume_map.display_name | string | The volume's drive letter or mount path, for display. | |
sparklogs.data.volume_map.aliases | string_array | Other names this volume is known by. | |
sparklogs.data.volume_map.primary_mount | string | The drive letter if the volume has one, else its first mount path. Absent when the volume is unmounted. | |
sparklogs.data.volume_map.mounts | string_array | Every path this volume is mounted at. Empty is a valid state: zero mounts is not an error. | |
sparklogs.data.volume_map.filesystem_type | string | The volume's filesystem type. | |
sparklogs.data.volume_map.filesystem_label | string | The volume's filesystem label. | |
sparklogs.data.volume_map.drive_type | string | What kind of drive this volume sits on. Carried for every volume, monitored or not: it is the fact that explains why an optical or network volume has no space or IO measurements anywhere else. | |
sparklogs.data.volume_map.backing_device_ids | string_array | The terminal storage devices visible at this observation boundary that back this volume, deduplicated. Never a claim about ultimate physical media. | |
sparklogs.data.volume_map.backing_resolution | string | How completely the backing devices could be resolved: complete, partial, unavailable, or not_applicable. | |
sparklogs.data.volume_map.logical_bytes | integer | bytes | The filesystem's logical size, duplicated from the same observation disk_volumes reads. Informational only. |
sparklogs.data.volume_map.available_bytes | integer | bytes | The filesystem's available space, duplicated from the same observation disk_volumes reads. Informational only. |
sparklogs.data.volume_map.observed_at | string | timestamp | When this row's reading was taken. |
sparklogs.data.volume_map.stale | bool | Whether this row is a held reading from a probe that could not complete rather than a fresh one. |
This topic reports what the host looks like rather than scoring a condition on it. The values it carries are queryable on their own.
Example
Inventory (every hour)
2 volumes; "C" ntfs "OS", 1 unmounted "3b1a9c1e".
sparklogs.data.volume_map.volume: volume:3b1a9c1e-0000-0000-0000-100000000001
sparklogs.data.volume_map.backing_device_ids: ["storage_device:eui.0025385c91b5a1e2"]
sparklogs.data.volume_map.backing_resolution: complete
sparklogs.data.volume_map.display_name: C:
sparklogs.data.volume_map.filesystem_label: OS
sparklogs.data.volume_map.filesystem_type: ntfs
sparklogs.data.volume_map.mounts: ["C:\\"]
sparklogs.data.volume_map.primary_mount: C:
sparklogs.data.volume_map.stale: false
SparkLogs: CONTEXT, Info, volume_map: INVENTORY: 2 volumes; "C" ntfs "OS", 1 unmounted "3b1a9c1e".