Splunk Search

Dashboard_live not showing all data after license change

asmithe
Path Finder

After upgrading license from free to enterprise, the default search dashboard displayed no data.

Search on Splunk Answers revealed nothing specific to this problem.

Found a related problem in this answer, and turns out if you check out the user roles and mistakenly click on something then try to use the browser back button, you may still change some of the default settings.

0 Karma
1 Solution

asmithe
Path Finder

In user roles, make sure to set "Indexes searched by default" to include whichever indices you want searched in dashboard_live.

View solution in original post

0 Karma

asmithe
Path Finder

In user roles, make sure to set "Indexes searched by default" to include whichever indices you want searched in dashboard_live.

0 Karma
Get Updates on the Splunk Community!

Join Us for Splunk University and Get Your Bootcamp Game On!

If you know, you know! Splunk University is the vibe this summer so register today for bootcamps galore ...

.conf24 | Learning Tracks for Security, Observability, Platform, and Developers!

.conf24 is taking place at The Venetian in Las Vegas from June 11 - 14. Continue reading to learn about the ...

Announcing Scheduled Export GA for Dashboard Studio

We're excited to announce the general availability of Scheduled Export for Dashboard Studio. Starting in ...