All Apps and Add-ons

No hosts showing in SAI

Esky73
Builder

I have installed ITSI on a standalone box (4.3.1) - which also installs SAI (+add-on)

I can discover a host and it appears in SAI using the discovery + deploy UF method - but that can't really be used for a deployment plan.

I've deployed a windows TA via the DS and the metrics are sent to the em_metrics index and i can search the metrics from the Metric browser (metric workspace \ Analyser) - but the host does not appear in SAI

Any Ideas ?

ta.

0 Karma

pwu_splunk
Splunk Employee
Splunk Employee

What do you see when you run | mcatalog values(host) WHERE `sai_metrics_indexes` AND metric_name=Processor.* OR metric_name=processor.* in Search?

0 Karma
Get Updates on the Splunk Community!

Demo Day: Strengthen Your SOC with Splunk Enterprise Security 8.1

Today’s threat landscape is more complex than ever. Security operation centers (SOCs) are overwhelmed with ...

Dashboards: Hiding charts while search is being executed and other uses for tokens

There are a couple of features of SimpleXML / Classic dashboards that can be used to enhance the user ...

Splunk Observability Cloud's AI Assistant in Action Series: Explaining Metrics and ...

This is the fourth post in the Splunk Observability Cloud’s AI Assistant in Action series that digs into how ...