Splunk IT Service Intelligence

ITSI: Open all in Deep Dive and we get No results found

danielbb
Motivator

We added a couple of KPIs to a service and under the Open all in Deep Dive they show as No results found while the corresponding searches return results -

alt text

What can it be?

Tags (2)
0 Karma

danielbb
Motivator

We worked with Support and found out that the indexers didn't have the ITSI specific limits.conf settings -

[kv]
limit = 500
maxchars = 50480
maxcols = 1024
0 Karma
Get Updates on the Splunk Community!

.conf24 | Day 0

Hello Splunk Community! My name is Chris, and I'm based in Canberra, Australia's capital, and I travelled for ...

Enhance Security Visibility with Splunk Enterprise Security 7.1 through Threat ...

(view in My Videos)Struggling with alert fatigue, lack of context, and prioritization around security ...

Troubleshooting the OpenTelemetry Collector

  In this tech talk, you’ll learn how to troubleshoot the OpenTelemetry collector - from checking the ...