Splunk ITSI

Why is the aggregated threshold for the KPIs only showing the values of the top entity?


We set up a service measuring datastore free space usage, overprovisioning , read and write activity.

Large amount of entities  are shown and per entity thresholds are working fine.

However the aggregated threshold for the KPIs show only the values of the top entity. 

According to manual the aggregated threshold should present an average of all entities result.

Is there a setting I am not using correct?

Labels (1)
0 Karma


It's possible that the aggregated threshold is set to only display the top entity due to a configuration setting.

You can check the settings and configuration documentation for the service to see if there is an option to display an average of all entities' results for the aggregated threshold. If not, you may need to modify the code or seek help from the vendor or support team for the service.

It's also possible that there is a bug in the service that's causing this behavior. In that case, you may want to report the issue to the vendor or support team for further investigation.

I hope it will help you. 

0 Karma
Get Updates on the Splunk Community!

Splunk Smartness with Brandon Sternfield | Episode 3

Callie Skokos: Hello and welcome to another episode of "Splunk Smartness," the interview series where we ...

Monitoring Postgres with OpenTelemetry

Behind every business-critical application, you’ll find databases. These behind-the-scenes stores power ...

Mastering Synthetic Browser Testing: Pro Tips to Keep Your Web App Running Smoothly

To start, if you're new to synthetic monitoring, I recommend exploring this synthetic monitoring overview. In ...