Splunk Search

Why do i get a warning triangle before actions on top right

pc591f
Explorer

I'm regularly seeing a warning triangle appear, who to I search to fine our what is causing this 

0 Karma
1 Solution

richgalloway
SplunkTrust
SplunkTrust

Thanks for the clarification.  There are many places where a yellow triangle can appear so it was hard to know which you were seeing.

I recommend ignoring the IOWait alert since it tends to be over-sensitive.  Tune the health check (Settings->Health Report Manager) so the alert appears less often.

---
If this reply helps you, Karma would be appreciated.

View solution in original post

richgalloway
SplunkTrust
SplunkTrust

Clicking on the triangle should display explanatory text.  Share that text here if you need help understanding it.

---
If this reply helps you, Karma would be appreciated.
0 Karma

deepakc
Builder

Without giveout more information so we can help you (it's better to provide more context as to your issue, screen shots etc) that said it sounds like its related to risky commands.

Maybe its to do with this.
https://docs.splunk.com/Documentation/Splunk/9.2.1/Security/SPLsafeguards

0 Karma

pc591f
Explorer

pc591f_0-1714050018792.png

It showing as green circle at the moment,  but it keeps flashing a warning  see screen shot below

pc591f_1-1714051227643.png

 

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Thanks for the clarification.  There are many places where a yellow triangle can appear so it was hard to know which you were seeing.

I recommend ignoring the IOWait alert since it tends to be over-sensitive.  Tune the health check (Settings->Health Report Manager) so the alert appears less often.

---
If this reply helps you, Karma would be appreciated.
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...

Step into “Hunt the Insider: An Splunk ES Premier Mystery” to catch a cybercriminal ...

After a whole week of being on call, you fell asleep on your keyboard, and you hit a sequence of buttons that ...