Splunk Search

Dashboard_live not showing all data after license change

asmithe
Path Finder

After upgrading license from free to enterprise, the default search dashboard displayed no data.

Search on Splunk Answers revealed nothing specific to this problem.

Found a related problem in this answer, and turns out if you check out the user roles and mistakenly click on something then try to use the browser back button, you may still change some of the default settings.

0 Karma
1 Solution

asmithe
Path Finder

In user roles, make sure to set "Indexes searched by default" to include whichever indices you want searched in dashboard_live.

View solution in original post

0 Karma

asmithe
Path Finder

In user roles, make sure to set "Indexes searched by default" to include whichever indices you want searched in dashboard_live.

0 Karma
Get Updates on the Splunk Community!

What's new in Splunk Cloud Platform 9.1.2312?

Hi Splunky people! We are excited to share the newest updates in Splunk Cloud Platform 9.1.2312! Analysts can ...

What’s New in Splunk Security Essentials 3.8.0?

Splunk Security Essentials (SSE) is an app that can amplify the power of your existing Splunk Cloud Platform, ...

Let’s Get You Certified – Vegas-Style at .conf24

Are you ready to level up your Splunk game? Then, let’s get you certified live at .conf24 – our annual user ...