Add entities and set time range
In this milestone, you add specific entities to RCA Workbench and configure the time range for your investigation.
RCA Workbench becomes powerful when you populate it with the services and infrastructure components involved in your incident. By adding relevant entities and setting the appropriate time range, you can see how insights correlate across your environment and identify the root cause.
Navigate to the Entity catalog.
Filter entities by Type to focus on services, pods, or nodes relevant to your incident.
Use the Insight Rings to identify entities with active issues.
Pick an entity row to investigate.
In the entity details panel, click Add to RCA workbench. Repeat for each entity involved in the incident or showing insights during the incident timeframe.
You added entities from the catalog to RCA Workbench.
Return to RCA Workbench.
Use the time picker in the upper right corner to set the investigation time window.
Select a time range that starts slightly before the incident symptoms appeared and extends past when the incident resolved (or to the current time if ongoing). A focused time range makes it easier to identify patterns and correlations on the timeline.
Tip: If you added too many entities, hover over an entity in the Timeline view’s left panel and click the X icon to remove it from the workbench.
You set the investigation time range.
In the next milestone, you’ll explore the timeline to understand the sequence of events during the incident.