Splunk ITSI

Default analyzer showing grey in tree view and NO results in GRID view .Although KPI and service is working fine.

Hemant1
Explorer

HI team ,

Default analyzer showing grey in tree view and NO results in GRID view .Although KPI and service is working fine.

can you help us why it is happening and we are using ITSI on-prem .

 

Labels (1)
0 Karma

mahesh_akula
New Member

Hi,

Please verify your indexes.conf whether datatype is missed for index "itsi_summary_metrics". Else try to import indexes from your ITSI SearchHead.

This need to be taken care when you upgrade from 4.4.x to 4.7.x

[itsi_summary_metrics]
homePath = $SPLUNK_DB/itsi_summary_metrics/db
coldPath = $SPLUNK_DB/cold/itsi_summary_metrics/colddb
thawedPath = $SPLUNK_DB/itsi_summary_metrics/thaweddb
datatype=metric

0 Karma
Get Updates on the Splunk Community!

Advanced Splunk Data Management Strategies

Join us on Wednesday, May 14, 2025, at 11 AM PDT / 2 PM EDT for an exclusive Tech Talk that delves into ...

Uncovering Multi-Account Fraud with Splunk Banking Analytics

Last month, I met with a Senior Fraud Analyst at a nationally recognized bank to discuss their recent success ...

Secure Your Future: A Deep Dive into the Compliance and Security Enhancements for the ...

What has been announced?  In the blog, “Preparing your Splunk Environment for OpensSSL3,”we announced the ...