All Apps and Add-ons

Data truncation in Splunk App for BlueCoat

gcusello
Legend

Hi at all,
I installed the Splunk App for BlueCoat on my Splunk Enterprise 6.3.3.
I installed the App following the tips and it seems to see all the logs correctly.
My problem is that all the charts in dashboard don't show results because there are too many data.
I tried to insert the parameter charting.data.count=0 in every chart but with no result.
Anyone can help me?
Thank you.
Bye.
Giuseppe

0 Karma
1 Solution

gcusello
Legend

I rebuild all the App's dashboards using Simple XML and now I haven't the problem yet.
Bye.
Giuseppe

View solution in original post

0 Karma

gcusello
Legend

I rebuild all the App's dashboards using Simple XML and now I haven't the problem yet.
Bye.
Giuseppe

View solution in original post

0 Karma
Did you miss .conf21 Virtual?

Good news! The event's keynotes and many of its breakout sessions are now available online, and still totally FREE!