Detector options 🔗
The Options tab lets you specify some of the same settings that are available in the Chart Options tab of a chart.
Show events as lines 🔗
Specifies whether vertical lines are displayed at times where event markers are shown.
Show data markers 🔗
Specifies whether small dots are displayed on the chart, indicating the times at which there are data points.
Max delay 🔗
By default, the Max delay field is set to
Auto, which allows data to come in with as little delay as possible.
If you know that some of your data is delayed and you want to wait for that data to arrive before your charts are updated, click the drop-down menu and choose a new value from the list. For more information, see Delayed data points.
Disable chart display sampling 🔗
In cases where a large number of time series would be displayed, for example, if you choose a metric being reported by 500 servers, Splunk Infrastructure Monitoring samples a subset of those time series so the chart will render more quickly. The sampled display provides you with an approximate sense of the values in those time series. If you disable sampling, any time series data that were previously omitted will be shown. Depending on the number of time series, disabling sampling may cause the chart to render more slowly.
The detector is still triggered as configured, regardless of the number of time series displayed on the chart.
Calendar time zone 🔗
The time zone used for aligning data timestamps and interpreting calendar cycles in analytics functions that perform calculations over calendar windows. All such functions in a chart use the same calendar time zone. The value set here can also be viewed and changed while editing any calendar window function in the chart builder. This option has no effect if there are no functions using calendar windows.