# SNMP Traffic Utilization graph

**URL:** <https://discuss.elastic.co/t/snmp-traffic-utilization-graph/258978>\
**Category:** Kibana\
**Created:** [December 17, 2020, 11:12am UTC](https://discuss.elastic.co/t/snmp-traffic-utilization-graph/258978 "2020-12-17T11:12:21Z")\
**Posts on this page:** 8\
**Page:** 1

<div class="post-metadata">

**Author:** ![pavansh](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/pavansh/32/81020_2.png) [@pavansh](https://discuss.elastic.co/u/pavansh)\
**Post date:** [December 17, 2020, 11:12am UTC](https://discuss.elastic.co/t/snmp-traffic-utilization-graph/258978/1 "2020-12-17T11:12:21Z")

</div>

I am using SNMP input Plugin to get IfInOctects and OutOctects  
Can anyone help me to create a chart to show Inbound/Outbound Traffic in Mbps?

---

<div class="post-metadata">

**Author:** ![ylasri](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ylasri/32/86120_2.png) [@ylasri](https://discuss.elastic.co/u/ylasri)\
**Post date:** [December 17, 2020, 1:01pm UTC](https://discuss.elastic.co/t/snmp-traffic-utilization-graph/258978/2 "2020-12-17T13:01:21Z")

</div>

I would recommand Lens

 ![image](https://us1.discourse-cdn.com/elastic/original/3X/c/7/c765b6fd15df892b16540c82670ad5c397b1e98f.png)

---

<div class="post-metadata">

**Author:** ![ylasri](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ylasri/32/86120_2.png) [@ylasri](https://discuss.elastic.co/u/ylasri)\
**Post date:** [December 17, 2020, 1:16pm UTC](https://discuss.elastic.co/t/snmp-traffic-utilization-graph/258978/3 "2020-12-17T13:16:10Z")

</div>

Just make sure you change the format number for your traffic metrics, and lens will automaticall ajust the conversion to KB, MB or GB

 ![image](https://us1.discourse-cdn.com/elastic/original/3X/9/4/94210c4c829415121725291364b40c266de8329a.png)

---

<div class="post-metadata">

**Author:** ![pavansh](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/pavansh/32/81020_2.png) [@pavansh](https://discuss.elastic.co/u/pavansh)\
**Post date:** [December 17, 2020, 3:09pm UTC](https://discuss.elastic.co/t/snmp-traffic-utilization-graph/258978/4 "2020-12-17T15:09:13Z")

</div>

@ylasri  
For Traffic Utilization I think we need to calculate it ?  
Input = ( value of latest IfInOctacts - value of Previous IfInOctacts ) / Time Interval in Seconds

---

<div class="post-metadata">

**Author:** ![ylasri](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ylasri/32/86120_2.png) [@ylasri](https://discuss.elastic.co/u/ylasri)\
**Post date:** [December 17, 2020, 3:39pm UTC](https://discuss.elastic.co/t/snmp-traffic-utilization-graph/258978/5 "2020-12-17T15:39:39Z")

</div>

Yes if this the definition of your metric, you can use [elasticsearch filter](https://www.elastic.co/guide/en/logstash/current/plugins-filters-elasticsearch.html) to get the latest event for your interface and then compute as you like and send back the data into elasticsearch

---

<div class="post-metadata">

**Author:** ![ylasri](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/ylasri/32/86120_2.png) [@ylasri](https://discuss.elastic.co/u/ylasri)\
**Post date:** [December 17, 2020, 4:12pm UTC](https://discuss.elastic.co/t/snmp-traffic-utilization-graph/258978/6 "2020-12-17T16:12:38Z")

</div>

Check these 2 post to get a method of calculation, both use the same logic (from a cisco post)  
[Cisco](https://www.cisco.com/c/en/us/support/docs/ip/simple-network-management-protocol-snmp/8141-calculate-bandwidth-snmp.html)  
[Solarwind](https://support.solarwinds.com/SuccessCenter/s/article/Calculate-interface-bandwidth-utilization?language=en_US)

---

<div class="post-metadata">

**Author:** ![pavansh](https://sea2.discourse-cdn.com/elastic/user_avatar/discuss.elastic.co/pavansh/32/81020_2.png) [@pavansh](https://discuss.elastic.co/u/pavansh)\
**Post date:** [December 18, 2020, 9:00am UTC](https://discuss.elastic.co/t/snmp-traffic-utilization-graph/258978/7 "2020-12-18T09:00:55Z")

</div>

@ylasri link you mentained is for traffic utilization in %.  
I prefer this link to get output in mbps: [https://www.reddit.com/r/sysadmin/comments/6rl5i4/snmp\_ifinoctetsifoutoctets\_to\_mbps/](https://www.reddit.com/r/sysadmin/comments/6rl5i4/snmp_ifinoctetsifoutoctets_to_mbps/)

I am not using the Logstash filter but I am doing something in TSVB Graph.  
Please check the Attachment, and ping me what I am doing wrong.

 ![Screenshot from 2020-12-18 14-23-47](https://us1.discourse-cdn.com/elastic/original/3X/6/5/65978b4efae315d33b2409e04c46dd6c687a9b00.png)

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [January 15, 2021, 9:00am UTC](https://discuss.elastic.co/t/snmp-traffic-utilization-graph/258978/8 "2021-01-15T09:00:58Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
