Splunk ITSI

Max length of KPI Base Search metric title in ITSI

ewan000
Path Finder

I created some base searches with the API with very long metric names derived from statsd metrics.

When I attempted to add these KPIs to a service via the UI I discovered that although the drop-down of the metrics from the base search populates and allows you select one. when you click 'next' you get an error "Metric field is required"

I attempted to edit the KPI base search with the UI to shorten the metric name, but although no error is thrown the UI will ignore the change.

I added a new metric with the name "test" and was able to select and proceed with adding this KPI to a service.

The documentation* doesn't seem to have a schema for the metric array and what information it has doesnt mention any max lengths of fields that i can see.

Is there a max length that I have exceeded, or is it something else about the way I have created the KPI base search?

*https://docs.splunk.com/Documentation/ITSI/4.4.1/RESTAPI/ITSIRESTAPIschema

Labels (2)
0 Karma
1 Solution

ewan000
Path Finder

I found that this is caused by not filling in the _key field on each metric

View solution in original post

0 Karma

ewan000
Path Finder

I found that this is caused by not filling in the _key field on each metric

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

.conf25 Global Broadcast: Don’t Miss a Moment

Hello Splunkers, .conf25 is only a click away.  Not able to make it to .conf25 in person? No worries, you can ...

Observe and Secure All Apps with Splunk

 Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

What's New in Splunk Observability - August 2025

What's New We are excited to announce the latest enhancements to Splunk Observability Cloud as well as what is ...