Splunk Search

Real time dashboard data not refreshing.


I've created a the following search that returns results when first run using 5 minute real time from the time picker. However, as the time axis refreshes the lines in the graph do not, eventually there is no data drawn on the graph. Any ideas?

index=perf_1 counter="IO Data Bytes/sec" |timechart avg(Value) by instance

Tags (2)
0 Karma


I have very similar problem also with perfmon. I though it happened because of delay in data, so I've tried to set time to search as rt-30s, the problem still exists, Some Ideas?

0 Karma
State of Splunk Careers

Access the Splunk Careers Report to see real data that shows how Splunk mastery increases your value and job satisfaction.

Find out what your skills are worth!