Dashboards & Visualizations

user is unable to see the results in dashboard

pratapa
Explorer

User is complaining that he is unable to see the results in Dashboard. It is saying "No results found".

I opened the query in search and executed but no events found.

Following is the search query.

stats sum(sessions) AS wsessions by _time,warehouse | timechart avg(wsessions) by warehouse

Not sure why it is not showing search results in the dashboard.

Can you please help me.

0 Karma

pratapa
Explorer

Following is the search query.

index=main sourcetype=wms_oracle_sessions | bucket span=5m _time | stats count AS sessions by _time,warehouse,machine,program | stats sum(sessions) AS wsessions by _time,warehouse | timechart avg(wsessions) by warehouse

0 Karma

BainM
Communicator

I may be Captain Obvious here, but where's your index and sourcetype?

index=?   sourcetype=? 
 | stats sum(sessions) AS wsessions by _time,warehouse | timechart avg(wsessions) by warehouse
0 Karma

jpolvino
Builder

Try unwrapping the search one part as a time. So try this:
stats sum(sessions) AS wsessions by _time,warehouse
| timechart avg(wsessions)
Then this:
stats sum(sessions) AS wsessions by _time,warehouse

Then this:
stats sum(sessions) AS wsessions
If none of these produce results, then pursue the suggestions from Rich.

richgalloway
SplunkTrust
SplunkTrust

If results are not shown in the dashboard and also are not shown in Search then either 1) the search is wrong; 2) the data isn't there; or 3) neither of you has permission to view the data.

---
If this reply helps you, Karma would be appreciated.

pratapa
Explorer

User wants results needs to be displayed on the dashboard.

What needs to be done to get the results displayed on the dashboard.

0 Karma

pratapa
Explorer

We increased the time range. But still "No results found"

0 Karma
Get Updates on the Splunk Community!

Optimize Cloud Monitoring

  TECH TALKS Optimize Cloud Monitoring Tuesday, August 13, 2024  |  11:00AM–12:00PM PST   Register to ...

What's New in Splunk Cloud Platform 9.2.2403?

Hi Splunky people! We are excited to share the newest updates in Splunk Cloud Platform 9.2.2403! Analysts can ...

Stay Connected: Your Guide to July and August Tech Talks, Office Hours, and Webinars!

Dive into our sizzling summer lineup for July and August Community Office Hours and Tech Talks. Scroll down to ...