Splunk Search

Real time dashboard data not refreshing.

richnavis
Contributor

I've created a the following search that returns results when first run using 5 minute real time from the time picker. However, as the time axis refreshes the lines in the graph do not, eventually there is no data drawn on the graph. Any ideas?

index=perf_1 counter="IO Data Bytes/sec" |timechart avg(Value) by instance

Tags (2)
0 Karma

stribog
Explorer

I have very similar problem also with perfmon. I though it happened because of delay in data, so I've tried to set time to search as rt-30s, the problem still exists, Some Ideas?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Persistent Queue at TcpOut — One of Splunk's Most Practical Features

Splunk introduced persistent queueing at the tcpout layer as one of the most practical resilience features in ...

Skip the Awkward Silence: Have a .conf-ersation at .conf26

Picture this. You arrive at .conf26 already having your socializing and networking plans mapped out. No ...

Rethinking Zero Trust: From Product Purchases to Logical Control Evidence

Implementing Zero Trust (ZT) across complex environments often falters at the very beginning due to a ...