Dashboards & Visualizations

Mimecast for Splunk app not displaying data in dashboard?

srodier01x
New Member

Environment:

Splunk Enterprise version: 7.2.1
Two search heads (one is a master).
Six heavy forwarders.
Three indexers.
One deployment server.

I created a new index and deployed it out to the peers (indexers), installed the Mimecast for Splunk app on the search head, then worked with Mimecast to get data in to the app (which I can see since it's saying "parsed X amount of logs" in the troubleshooting section of the app), but the dashboards are not displaying anything. Where did I go wrong ya'll think? Thanks.

Tags (1)
0 Karma

mimistina
New Member

Hi!

I am having the same issue and havent been lucky solving it.

Were you able to see any data on the dashboards?

Thanks!!
Miriam

0 Karma

gift
New Member

Hi There,

I am experiencing the same issue here, how did you resolve it?

 

Kind Regards

gift

Tags (1)
0 Karma
Get Updates on the Splunk Community!

[Puzzles] Solve, Learn, Repeat: Dynamic formatting from XML events

This challenge was first posted on Slack #puzzles channelFor a previous puzzle, I needed a set of fixed-length ...

Enter the Agentic Era with Splunk AI Assistant for SPL 1.4

  🚀 Your data just got a serious AI upgrade — are you ready? Say hello to the Agentic Era with the ...

Stronger Security with Federated Search for S3, GCP SQL & Australian Threat ...

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...