Splunk Enterprise Security

Menu Bar Missing in Search and Reporting UI After Upgrade to 9.3.1- Splunk Enterprise

sajith
Loves-to-Learn

I recently upgraded Splunk Enterprise from version 9.1.0.2 to 9.3.1, and I've encountered an issue where the menu bar is no longer visible in the Search and Reporting UI.

Issue Details:

  • Previous Version: 9.1.0.2
  • Current Version: 9.3.1
  • Issue: The menu bar has disappeared, and to access menus, users must utilize the 'Find box' in the top right corner. For example, if a user wants to view dashboards, they need to type "dashboards" into the search box and select it from the results.

Screenshots: 
Before Upgrade (9.1.0.2)

Before Upgrade (9.1.0.2) with MenubarBefore Upgrade (9.1.0.2) with Menubar

After Upgrade (9.3.1)

After Upgrade (9.3.1)- No menu bartAfter Upgrade (9.3.1)- No menu bart

Request: Is there a way to restore the traditional menu bar in the Search and Reporting window? 

Thank you

Labels (2)
0 Karma

sajith
Loves-to-Learn

Haven't noticved any particular error in splunkd.log / UI-access logs 

 

0 Karma

PaulPanther
Motivator

Could you please check if the default.xml exists under %SplunkHome%/etc/apps/search/default/data/ui/nav/?

0 Karma

sajith
Loves-to-Learn

Hi, 

Yes it is there 

[root@ nav]$  ls -la $SPLUNK_HOME/etc/apps/search/default/data/ui/na
-r--r--r--. 1 svc-splunk eb-svc-splunk 235 Oct  9 10:29 default.xml

Content 

<nav search_view="search" color="#5CC05C">
  <view name="search" default="true" />
  <view name="analytics_workspace" />
  <view name="datasets" />
  <view name="reports" />
  <view name="alerts" />
  <view name="dashboards" />
</nav>

 

0 Karma

PaulPanther
Motivator

Okay, have you checked the internal logs on the affected instance for any WARN or ERROR events especially during a reboot?

0 Karma

sajith
Loves-to-Learn

I have checked in splunkd.log, haven't noticed any particular error or warning related to this. also web-ui log

 

0 Karma
Get Updates on the Splunk Community!

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...

Why am I not seeing the finding in Splunk Enterprise Security Analyst Queue?

(This is the first of a series of 2 blogs). Splunk Enterprise Security is a fantastic tool that offers robust ...

Index This | What are the 12 Days of Splunk-mas?

December 2024 Edition Hayyy Splunk Education Enthusiasts and the Eternally Curious!  We’re back with another ...