Splunk ITSI

Why is the aggregated threshold for the KPIs only showing the values of the top entity?

a1bg503461
Explorer

We set up a service measuring datastore free space usage, overprovisioning , read and write activity.

Large amount of entities  are shown and per entity thresholds are working fine.

However the aggregated threshold for the KPIs show only the values of the top entity. 

According to manual the aggregated threshold should present an average of all entities result.

Is there a setting I am not using correct?

Labels (1)
0 Karma

Nancywheeler60
Explorer

It's possible that the aggregated threshold is set to only display the top entity due to a configuration setting.

You can check the settings and configuration documentation for the service to see if there is an option to display an average of all entities' results for the aggregated threshold. If not, you may need to modify the code or seek help from the vendor or support team for the service.

It's also possible that there is a bug in the service that's causing this behavior. In that case, you may want to report the issue to the vendor or support team for further investigation.

I hope it will help you. 

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...