# Windows Perfmon (DHCP) Dashboard

**URL:** <https://discuss.elastic.co/t/windows-perfmon-dhcp-dashboard/260263>\
**Category:** Beats\
**Tags:** metricbeat\
**Created:** [January 6, 2021, 12:26am UTC](https://discuss.elastic.co/t/windows-perfmon-dhcp-dashboard/260263 "2021-01-06T00:26:52Z")\
**Posts on this page:** 2\
**Page:** 1

<div class="post-metadata">

**Author:** ![efaile](https://avatars.discourse-cdn.com/v4/letter/e/f0a364/32.png) [@efaile](https://discuss.elastic.co/u/efaile)\
**Post date:** [January 6, 2021, 12:26am UTC](https://discuss.elastic.co/t/windows-perfmon-dhcp-dashboard/260263/1 "2021-01-06T00:26:52Z")

</div>

I'm new to the Elastic Stack - forgive me if this is a "Captain Obvious" question. We want to monitor some key services such as DHCP Declines that can be indicative of trouble. I installed the metricbeat on our Windows 2012 R2 Domain Controller (DC) and after some trial and error banged out a modules.d\windows.yaml that contained some relevant counters (will post below).

In Discover view on Elastic side I do see some mention of 3 perfmon counters but its ugly when I click "visualize". Since there does not appear to be built in logic to "magically create" a dashboard as I see for metricbeat and winlogbeat on other items - is there a simple tutorial on how I might see these and perhaps add some other KPI's to a "Domain Controller Dashboard"?

Here are the counters I configured in the YAML file in case anyone else may look for similar:

# Module: windows

# Docs: [https://www.elastic.co/guide/en/beats/metricbeat/7.9/metricbeat-module-windows.html](https://www.elastic.co/guide/en/beats/metricbeat/7.9/metricbeat-module-windows.html)

- module: windows  
metricsets:

- module: windows  
metricsets:

# - object: 'Process'

# instance: ["svchost\*", "conhost\*"]

# counters:

# - name: 'Disk Writes/sec'

# field: physical\_disk.write.per\_sec

# format: "float"

# - name: "% Disk Write Time"

- object: 'DHCP Server'  
counters:
  - name: 'Declines/sec'  
format: "float"

- object: 'DHCP Server'  
counters:
  - name: 'Requests/sec'  
format: "float"

- object: 'DHCP Server'  
counters:
  - name: 'Offers/sec'  
format: "float"

- object: 'DHCP Server'  
counters:
  - name: 'Releases/sec'  
format: "float"

Literally ANY guidance on how to easily lay out a visual on this would be great - many of the counters are zero (no declines are a GOOD thing) and we are small so often counters are zero or .8 / sec for example if that helps.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/elastic/original/3X/1/a/1ac57faf039f6b580b3f104ef42a2a89e41014de.png) [@system](https://discuss.elastic.co/u/system)\
**Post date:** [February 3, 2021, 2:26am UTC](https://discuss.elastic.co/t/windows-perfmon-dhcp-dashboard/260263/2 "2021-02-03T02:26:54Z")

</div>

This topic was automatically closed 28 days after the last reply. New replies are no longer allowed.
