
cz1tf (cz1tf) asked a question.
We are getting rate limit warning for metric app data logs in splunk. And we are unable to control it through any of the configurations in add-on.
It will be good if there is any attribute added in the configuration or to control log of the metric app by segregating them as Only app , app user and appgroups so that whichever needed can be configured on our own

Thank you for reaching us. To learn more about what rate limits you have, please visit this article:
https://developer.okta.com/docs/reference/rate-limits/
Usually apps like Splunk that gather logs from Okta would be set up in a way to not hit on RL Violations. If you are only seeing warnings from time to time, it is probably the app going all the way up to the RL and limiting itself - by constantly checking on the Headers to see how many requests are left.
If the app is provoking any inconvenience for your work, I would propose to lower the call per minutes the app makes. So that you will not be impacted by any RL Violation that may occur.
Thanks for your response.
I would like to know which exact attribute in the splunk add-on configuration settings can fix this?
Regards,
Viji