Quantcast
Channel: Questions in topic: "splunk-enterprise"
Viewing all articles
Browse latest Browse all 47296

Splunk IT Service Intelligence: Why am I not getting any data in the threshold section using the stats command in this search?

$
0
0
I'm using Splunk IT Service Intelligence and this search: (index=mtparam mtparam=Fabwide:NON-DELETABLE sourcetype=Realtime30MinPaceByArea) OR sourcetype=*RUN_count* | stats max(RUN_COUNT) as RUNCOUNT, max(Value) as PACE | eval Delta=(PACE - RUNCOUNT) Using the Splunk search app, I see values for the three, but using ITSI, and what I believe to be the proper threshold field **Delta**, I am receiving no data in the threshold section. Am I doing something incorrectly?

Viewing all articles
Browse latest Browse all 47296

Trending Articles



<script src="https://jsc.adskeeper.com/r/s/rssing.com.1596347.js" async> </script>