Splunk® IT Service Intelligence

User Manual

Acrobat logo Download manual as PDF

Splunk IT Service Intelligence version 4.0.x reached its End of Life on January 19, 2021. See the Splunk Software Support Policy for details. For information about upgrading to a supported version, see Plan an upgrade of IT Service Intelligence.
This documentation does not apply to the most recent version of Splunk® IT Service Intelligence. Click here for the latest version.
Acrobat logo Download topic as PDF

ITSI Health Check dashboard

The ITSI Health Check dashboard provides basic statistics about your ITSI environment.

Dashboard panels

Panel Description
Splunk Server Information Basic server information for each host.
ITSI Migration Status The current version of ITSI and the ITSI KV store. These versions should be the same.
ITSI Basic Information For each host, lists the number of services, searches, and entities, as well as KV store and HEC information.
Shared Base Search Usage Summary The number of KPIs using each base search.
KV Store Collections All ITSI KV store collections, the number of objects in each collection, acceleration information, and the collection size. For more information, see About the app key value store in the Splunk Admin Manual.
Concurrent Searches All ITSI searches currently running.
Interesting Indexes All ITSI indexes and their statistics.
Interesting searches Real-time searches that ITSI runs. itsi_event_grouping handles event grouping for notable event aggregation policies. itsi_mad_context and itsi_mad_cohesive_context handle metric anomaly detection. If any search jobs are failed or not running, this could indicate a problem.
KPI Performance Basic performance information for each KPI in your ITSI instance. Any failed or skipped searches indicate a problem. The runtime headroom percentage indicates how much time has been used up out of the search's frequency. A headroom percentage clone to 100 is best, and a value closer to 0 indicates a problem.
Refresh Queue Runtimes Statistics for the refresh queue. The refresh queue ensures data integrity and eventual consistency of your ITSI configuration. It runs as a single instance.
Refresh Queue Failed Jobs The number of failed jobs in the refresh queue. Click a failed job to drill down to the logs.
ITSI Log Messages (deduplicated) Warning and error messages in the ITSI logs. The messages are deduplicated so you won't see the same error multiple times.
Check for Duplicate Entity Aliases Lists the alias field values identifying more than one entity. For more information, see Duplicate entity aliases in the ITSI Installation and Configuration Manual.
Last modified on 15 November, 2018
Predictive Analytics dashboard
ITSI modules

This documentation applies to the following versions of Splunk® IT Service Intelligence: 4.0.0, 4.0.1, 4.0.2, 4.0.3, 4.0.4

Was this documentation topic helpful?

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters