Splunk Search
Highlighted

Can't query for Metrics

New Member

I have create a metric Index called "mymetricindex".
I see, that the index is populated with events.

I have added the role "metricsuser" and added the capability of "listmetricscatalog" to the new role.
I have granted this role to my user, which has already sc
admin role.

When running command mcatalog values(metricname) WHERE index="mymetric_index" I receive just:

4 errors occurred while the search was executing. Therefore, search results might be incomplete. Hide errors.
This command only searches event indexes. To search metric indexes, use the mstats command.

0 Karma