# How to get diskio read and write counts for a particular process

**URL:** <https://discuss.elastic.co/t/how-to-get-diskio-read-and-write-counts-for-a-particular-process/157692>\
**Category:** Beats\
**Tags:** metricbeat\
**Created:** [November 21, 2018, 11:21am UTC](https://discuss.elastic.co/t/how-to-get-diskio-read-and-write-counts-for-a-particular-process/157692 "2018-11-21T11:21:55Z")\
**Posts on this page:** 8\
**Page:** 1

<div class="post-metadata">

**Author:** ![kunapaneni\_siddharth](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/kunapaneni_siddharth/32/46273_2.png) [@kunapaneni\_siddharth](https://discuss.elastic.co/u/kunapaneni_siddharth)\
**Post date:** [November 21, 2018, 11:21am UTC](https://discuss.elastic.co/t/how-to-get-diskio-read-and-write-counts-for-a-particular-process/157692/1 "2018-11-21T11:21:56Z")

</div>

Can we get the **read** and **write** io counts (system.diskio.read.count and system.diskio.write.count) for a specific **process** (system.process.name)?

---

<div class="post-metadata">

**Author:** ![Mario\_Castro](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/mario_castro/32/35107_2.png) [@Mario\_Castro](https://discuss.elastic.co/u/Mario_Castro)\
**Post date:** [November 26, 2018, 8:56pm UTC](https://discuss.elastic.co/t/how-to-get-diskio-read-and-write-counts-for-a-particular-process/157692/2 "2018-11-26T20:56:29Z")

</div>

Hi @kunapaneni_siddharth 🙂

This is easily achieved in Kibana by setting up the proper search when building the chart. If you want a "direct" way without using Kibana, I'm afraid that we can't do anything like this yet.

Feel free to file an enhancement issue on [https://github.com/elastic/beats](https://github.com/elastic/beats)

Regards!

---

<div class="post-metadata">

**Author:** ![kunapaneni\_siddharth](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/kunapaneni_siddharth/32/46273_2.png) [@kunapaneni\_siddharth](https://discuss.elastic.co/u/kunapaneni_siddharth)\
**Post date:** [November 27, 2018, 5:25am UTC](https://discuss.elastic.co/t/how-to-get-diskio-read-and-write-counts-for-a-particular-process/157692/3 "2018-11-27T05:25:47Z")

</div>

Hi @Mario_Castro  
**read** and **write** io counts (system.diskio.read.count and system.diskio.write.count) are in a metricset named **diskio** and system.process.name is in a different metricset named **process**. So, it's not giving the read and write counts for a specific process.

Plz find the screenshot attached

 ![process_metricset](https://us1.discourse-cdn.com/elastic/original/3X/2/f/2fd0913299a3537fa945c1182c6fd41ff04ff66e.png)

Regards

---

<div class="post-metadata">

**Author:** ![Mario\_Castro](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/mario_castro/32/35107_2.png) [@Mario\_Castro](https://discuss.elastic.co/u/Mario_Castro)\
**Post date:** [November 27, 2018, 7:25am UTC](https://discuss.elastic.co/t/how-to-get-diskio-read-and-write-counts-for-a-particular-process/157692/4 "2018-11-27T07:25:41Z")

</div>

I'm sorry, I misunderstood your question the first time. `diskio` metricset uses specific syscalls related to hard disk to retrieve the IO but I'm afraid that the information we retrieve is not attached anyhow to specify processes.

---

<div class="post-metadata">

**Author:** ![kunapaneni\_siddharth](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/kunapaneni_siddharth/32/46273_2.png) [@kunapaneni\_siddharth](https://discuss.elastic.co/u/kunapaneni_siddharth)\
**Post date:** [November 27, 2018, 8:35am UTC](https://discuss.elastic.co/t/how-to-get-diskio-read-and-write-counts-for-a-particular-process/157692/5 "2018-11-27T08:35:52Z")

</div>

"the **tota** l IO on disk is the sum of the IO **per each** peocess".Is it correct?  
If yes, Is it possible to get IO per process?

---

<div class="post-metadata">

**Author:** ![Mario\_Castro](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/mario_castro/32/35107_2.png) [@Mario\_Castro](https://discuss.elastic.co/u/Mario_Castro)\
**Post date:** [November 27, 2018, 9:51am UTC](https://discuss.elastic.co/t/how-to-get-diskio-read-and-write-counts-for-a-particular-process/157692/6 "2018-11-27T09:51:17Z")

</div>

I'm afraid that no, while the definition is correct, we don't fetch IO per process and then sum up everything to give a value in `system` metricset. In resume, we just _fetch the value returned by the disk_

---

<div class="post-metadata">

**Author:** ![kunapaneni\_siddharth](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/kunapaneni_siddharth/32/46273_2.png) [@kunapaneni\_siddharth](https://discuss.elastic.co/u/kunapaneni_siddharth)\
**Post date:** [November 27, 2018, 11:10am UTC](https://discuss.elastic.co/t/how-to-get-diskio-read-and-write-counts-for-a-particular-process/157692/7 "2018-11-27T11:10:19Z")

</div>

Can you please suggest me some way to get the visualization of IO per process? or getting at least the process that is having maximum IO.

I have seen in Process Explorer that is is able to give the visualization of process that is having maximum IO versus time. Getting something like that is it possible with kibana?

Please find the screenshot below

 ![Screenshot%20(50)](https://us1.discourse-cdn.com/elastic/original/3X/0/5/0540d4ef16d8903b2c558b7bf5dd3cfe6f27afce.png)

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [December 25, 2018, 11:10am UTC](https://discuss.elastic.co/t/how-to-get-diskio-read-and-write-counts-for-a-particular-process/157692/8 "2018-12-25T11:10:21Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
