Process' memory usage.
Fields
| Field Name | Description |
|---|---|
wiredSize - Uint64!
|
The amount of memory in bytes that is wired. Wired memory is in pages that cannot be swapped out. In the MS Windows task manager this is labeled: "NP Pool". Not available on Linux. |
workingSetSize - Uint64!
|
The total amount of physical memory in bytes including both private and shareable/shared memory. In the MS Windows task manager this is labeled: "Working set". In Apple macOS Activity Monitor this is labelled: "Real Memory". In Linux this is labeled: "Resident Set Size (RSS)" using ps command. |
totalSize - Uint64!
|
The actual amount of committed memory that is being used (both physical and swapped). In the MS Windows task manager this is labeled: "Commit size". In Apple macOS Activity Monitor this is labeled: "Memory". In Linux this is labeled: "Virtual Memory Size (VSZ)" using ps command. |
Used by
Executabletype: A unique executable file observed running on an Endpoint, aggregating data across all observed processes that share the same file system path.Processtype: An operating system process.
Example
Example
{
"wiredSize": "8589934592",
"workingSetSize": "8589934592",
"totalSize": "8589934592"
}