Splunk Enterprise

Indexing Performance Drop-down Indexer (ServerName) is Wrong

gearmstrong
Path Finder

Good day folks,

After migrating and upgrading from 2016 DataCenter 'All-in-one' 8.0.0 to 2019 DataCenter Core 'All-in-one' 8.1.0.1 Build:24fd52428b5a I have noticed a few things don't seem to be populating with the new server name.

For example the Monitoring Console-> Indexing-> Indexing Performance: instance "Instance" Drop-down input box has the Old Server Name (only) and does not thereby produce any metrics for the new server.  I have verified and validated new name in Server.conf.  I have checked metrics.log and data is flowing. 

i  don't see anywhere I can edit this 'Report/Form' to obtain drop-down data.  Where else can I see where this drop-down is being populated from?

Thank you,

Greg

Labels (3)
0 Karma
1 Solution

gearmstrong
Path Finder

I just found the answer!  Apparently if you upgrade in the fashion that I did, you will need to go into General Setup for Monitoring Console (Monitoring Console-> Settings-> General Setup)... review and ensure settings do indeed reflect your current (new) Server Name and then click "Apply Changes" Button to reset config to new server.

View solution in original post

0 Karma

gearmstrong
Path Finder

I just found the answer!  Apparently if you upgrade in the fashion that I did, you will need to go into General Setup for Monitoring Console (Monitoring Console-> Settings-> General Setup)... review and ensure settings do indeed reflect your current (new) Server Name and then click "Apply Changes" Button to reset config to new server.

0 Karma

nickhills
Ultra Champion

Take a look in $SPLUNK_HOME/etc/system/local/inputs.conf

On initial install this file also gets the original hostname written into it.

If my comment helps, please give it a thumbs up!
0 Karma

gearmstrong
Path Finder

Thank you Nick,

Yes, that is one of the files that I had verified that also had correct Server Name in it in format below:


[default]
host = NewServerName.fqdn

0 Karma
Get Updates on the Splunk Community!

Share Your Ideas & Meet the Lantern team at .Conf! Plus All of This Month’s New ...

Splunk Lantern is Splunk’s customer success center that provides advice from Splunk experts on valuable data ...

Combine Multiline Logs into a Single Event with SOCK: a Step-by-Step Guide for ...

Combine multiline logs into a single event with SOCK - a step-by-step guide for newbies Olga Malita The ...

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...