Splunk ITSI

ITSI, Service Analyzer

genesiusj
Builder

Hello,

Looking a detailed doc/vid on Service Analyzer (SA). 

Having issues with permitting users an pre-filtered SA and blocking their ability to switch to another filter, or turn off filtering completely.

My flawed(?) understanding is there is really only a single SA which contains every service within ITSI. Using Teams, we should be able to create other SAs permitting permitting different access. However, that is not working; or I am missing something in the process. While I can save a new SA with the filter on service or tag in place; the user can click the X on the service or tag filter and see all services and tags available, including CPs, which they do not have read/write permissions to.

Thanks in advance and God bless,
Genesius

Labels (2)
0 Karma

danielbb
Motivator

It sounds like you want to restrict users to a specific, pre-filtered view in Service Analyzer and prevent them from removing or changing those filters.

To clarify, Service Analyzer itself is a single app that displays all services in ITSI, and filters applied through the UI are generally user-controlled. Teams and roles in ITSI control access to services and KPIs, but they don’t inherently restrict filter controls within Service Analyzer.

Some questions to better understand your setup:

  • Are you using ITSI Teams and roles to limit users’ permissions on specific services and KPIs?
  • How are you creating and sharing these filtered Service Analyzer views? Are these saved as bookmarks or dashboards?
  • Have you explored the “Service Visibility” settings in ITSI to restrict what services users can see?
  • Are users accessing Service Analyzer via direct URL with filters applied, or through the main ITSI navigation?

Getting clarity on these points can help determine if the behavior is expected or if additional permission configurations are needed.

If this helps, some karma would be appreciated!

0 Karma

livehybrid
SplunkTrust
SplunkTrust

Hi @genesiusj 

I wonder if these pages help you in terms of SA? https://www.splunk.com/en_us/pdfs/getting-started/splunk-getting-started-with-itsi.pdf

https://docs.splunk.com/Documentation/ITSI/4.20.1/SI/AboutSA

https://help.splunk.com/en/splunk-it-service-intelligence/splunk-it-service-intelligence/visualize-a...

🌟 Did this answer help you? If so, please consider:

    • Adding karma to show it was useful
    • Marking it as the solution if it resolved your issue
    • Commenting if you need any clarification

Your feedback encourages the volunteers in this community to continue contributing.

 

0 Karma
Get Updates on the Splunk Community!

CX Day is Coming!

Customer Experience (CX) Day is on October 7th!! We're so excited to bring back another day full of wonderful ...

Strengthen Your Future: A Look Back at Splunk 10 Innovations and .conf25 Highlights!

The Big One: Splunk 10 is Here!  The moment many of you have been waiting for has arrived! We are thrilled to ...

Now Offering the AI Assistant Usage Dashboard in Cloud Monitoring Console

Today, we’re excited to announce the release of a brand new AI assistant usage dashboard in Cloud Monitoring ...