Hi there,
I have splunk enterprise installed in linux server. I am accessing it through instance like http://(server ip)/8000/ from my windows machine.
i have added splunk add-on for service now and splunk app for service now.
I am able to create incidents from splunk in servicenow.
when i go to app the event data in the data summary is not displaying its showing "waiting for data" for hours.
And from settings-> add data-> upload i am unable to add .csv or .db file, simple the next button is disabled and showing "Cannot preview on this Splunk instance".
when i try to add a zip file its going 2 steps ahead but not able to go to final step.
so i am unable to add data.
And when i search some thing in the save as option the dashboard panel and report are working by giving pop-up to give name and details and save button.
where as when tried to save as alert the screen is going grey and no pop up for give a name and save button.
and in the splunk app for servicenow, in overview section all the fields are showing "0" even for "no of open incidents" while we have open incidents in servicenow.
I have a splunk enterprise installed on my local machine which i access by "http:localhost/8000 "
add-on wont work as its linux based, but app is showing the correct amount of open incidents.
and in the search and reporting app i able to do all the things i was unable to do in linux splunk indicated above.
please help.
↧