Splunk Search

Error on search when using table

larryaucoin
Observer

Since upgrading to 9.1.2, I am no longer able to see table output on the Splunk Search.  Even with the most simplistic search.  I receive the message "Failed to load source for Statistics Table visualization."

I am able to see "Events" and also able to use "fields", just not table.  Note that this works when viewing in a Studio Dashboard, so the issue seems to be limited to the Search app.

Labels (1)
0 Karma

IgorBR
Engager

I'm sure you've already solved this one, but maybe it'll help someone else down the line

We've ran into a similar issue lately - in our case it was caused by a pre-9.x copy of search.xml in $SPLUNK_HOME/etc/apps/search/local/ui/dashboards

 

 

0 Karma

thunt1104
Engager

I have having this issue with 9.1.1 as well.  We upgraded to 9.1.1, just before 9.1.2 came out.  Upgraded from 8.2.5.  Getting the same message, "Failed to load source for Statistics Table visualization".

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Break the Build: Inside the KubeDoom Lounge at .conf26

    You step up to the machine. The pixelated corridors of a certain 1993 FPS load in front of you, EMP Pulse ...

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...