All Apps and Add-ons

50 - 50 output in web intelligence app | [Traffic pattern/status, Report Top page view/Top Client Ips are working , remaining not working ]

mnaina
Explorer

Following tabs are working in web intelligence app

-Traffic Pattern

-Traffic status

-Advanced Charting: Report - Top Pageview

-Advanced Charting Report - Top Client Ips

Rest of the tabs are not working like (real time dashboard, page views, visitor trends, organic searches ..etc. [error: No results found]

I'm using IIS logs, Installed the universal forwarder in the web server and added the following stanza in the inputs.conf file


[monitor://C:\inetpub\logs\LogFiles]

disabled = false

followTail = 0

sourcetype=iis


Backfilling done for 10 days

What do I need to do to configure to get rest of the things will work...

Thanks in advance

0 Karma

rcavallo
New Member

I have a simliar problem, but it appears that it is because eventtype=pageview does not exist in my system anywhere. Am I supposed to create that eventtype manually?

0 Karma

mnaina
Explorer

Thanks gfuente for your answer

I checked the W3C log format in Web server IIS manager, client ip is enabled but referrer not, now referrer is enabled.

Report Bus and Report Ops are not working in web intelligence app , but Realtime Bus and realtime Ops reports are working.
I also did backfilling for 10 days.

What is missing?

0 Karma

gfuente
Motivator

Hello

You should check your IIS login format configuration, maybe you are not login client-ip or referrer

Regards

mnaina
Explorer

Thanks gfuente for your answer

I checked the W3C log format in Web server IIS manager, client ip is enabled but referrer not, now referrer is enabled.

Report Bus and Report Ops are not working in web intelligence app , but Realtime Bus and realtime Ops reports are working.
I also did backfilling for 10 days.

What is missing?

0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...

What's new in Splunk Cloud Platform 9.1.2312?

Hi Splunky people! We are excited to share the newest updates in Splunk Cloud Platform 9.1.2312! Analysts can ...

What’s New in Splunk Security Essentials 3.8.0?

Splunk Security Essentials (SSE) is an app that can amplify the power of your existing Splunk Cloud Platform, ...