<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Can I use a token in the dynamic search option for an input? in Dashboards &amp; Visualizations</title>
    <link>https://community.splunk.com/t5/Dashboards-Visualizations/Can-I-use-a-token-in-the-dynamic-search-option-for-an-input/m-p/603449#M49571</link>
    <description>&lt;P&gt;I am trying to create a dynamic input using the dynamic search option. Can this search use a token in it? So far I've tried and haven't had any success.&lt;/P&gt;</description>
    <pubDate>Mon, 27 Jun 2022 20:44:13 GMT</pubDate>
    <dc:creator>klim</dc:creator>
    <dc:date>2022-06-27T20:44:13Z</dc:date>
    <item>
      <title>Can I use a token in the dynamic search option for an input?</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Can-I-use-a-token-in-the-dynamic-search-option-for-an-input/m-p/603449#M49571</link>
      <description>&lt;P&gt;I am trying to create a dynamic input using the dynamic search option. Can this search use a token in it? So far I've tried and haven't had any success.&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jun 2022 20:44:13 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Can-I-use-a-token-in-the-dynamic-search-option-for-an-input/m-p/603449#M49571</guid>
      <dc:creator>klim</dc:creator>
      <dc:date>2022-06-27T20:44:13Z</dc:date>
    </item>
    <item>
      <title>Re: Can I use a token in the dynamic search option for an input?</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Can-I-use-a-token-in-the-dynamic-search-option-for-an-input/m-p/603454#M49572</link>
      <description>&lt;P&gt;Can you share what you have tried?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jun 2022 21:04:18 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Can-I-use-a-token-in-the-dynamic-search-option-for-an-input/m-p/603454#M49572</guid>
      <dc:creator>nadlurinadluri</dc:creator>
      <dc:date>2022-06-27T21:04:18Z</dc:date>
    </item>
    <item>
      <title>Re: Can I use a token in the dynamic search option for an input?</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Can-I-use-a-token-in-the-dynamic-search-option-for-an-input/m-p/603458#M49574</link>
      <description>&lt;P&gt;Sure.&lt;/P&gt;&lt;P&gt;I tried a simple search like:&lt;/P&gt;&lt;P&gt;index=* field=$token$ | table field2&lt;/P&gt;&lt;P&gt;That doesn't produce a result. When I click the search button in the input config, the search page that opens contains the same query as above and the token isn't replaced with a value.&lt;/P&gt;&lt;P&gt;However if I put a value in the $token$ spot it returns a value for the input.&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jun 2022 21:12:24 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Can-I-use-a-token-in-the-dynamic-search-option-for-an-input/m-p/603458#M49574</guid>
      <dc:creator>klim</dc:creator>
      <dc:date>2022-06-27T21:12:24Z</dc:date>
    </item>
    <item>
      <title>Re: Can I use a token in the dynamic search option for an input?</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Can-I-use-a-token-in-the-dynamic-search-option-for-an-input/m-p/603464#M49575</link>
      <description>&lt;P&gt;It looks like you might be using the wrong token. This is a sample dashboard which might help you troubleshooting the issue.&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;&amp;lt;form&amp;gt;
  &amp;lt;label&amp;gt;Dummy&amp;lt;/label&amp;gt;
  &amp;lt;fieldset submitButton="false"&amp;gt;
    &amp;lt;input type="dropdown" token="field1"&amp;gt;
      &amp;lt;label&amp;gt;field1&amp;lt;/label&amp;gt;
      &amp;lt;choice value="Number1"&amp;gt;Number1&amp;lt;/choice&amp;gt;
      &amp;lt;choice value="Number2"&amp;gt;Number2&amp;lt;/choice&amp;gt;
      &amp;lt;default&amp;gt;Number1&amp;lt;/default&amp;gt;
      &amp;lt;initialValue&amp;gt;Number1&amp;lt;/initialValue&amp;gt;
    &amp;lt;/input&amp;gt;
  &amp;lt;/fieldset&amp;gt;
  &amp;lt;row&amp;gt;
    &amp;lt;panel&amp;gt;
      &amp;lt;title&amp;gt;Temporary to check the token value - "$field1$"&amp;lt;/title&amp;gt;
      &amp;lt;table&amp;gt;
        &amp;lt;search&amp;gt;
          &amp;lt;query&amp;gt;| makeresults 
| eval Key="Number1",Value="11" 
| append 
    [| makeresults 
    | eval Key="Number2",Value="22"
        ] 
| search Key="$field1$"&amp;lt;/query&amp;gt;
          &amp;lt;earliest&amp;gt;-24h@h&amp;lt;/earliest&amp;gt;
          &amp;lt;latest&amp;gt;now&amp;lt;/latest&amp;gt;
          &amp;lt;sampleRatio&amp;gt;1&amp;lt;/sampleRatio&amp;gt;
        &amp;lt;/search&amp;gt;
        &amp;lt;option name="count"&amp;gt;20&amp;lt;/option&amp;gt;
        &amp;lt;option name="dataOverlayMode"&amp;gt;none&amp;lt;/option&amp;gt;
        &amp;lt;option name="drilldown"&amp;gt;none&amp;lt;/option&amp;gt;
        &amp;lt;option name="percentagesRow"&amp;gt;false&amp;lt;/option&amp;gt;
        &amp;lt;option name="refresh.display"&amp;gt;progressbar&amp;lt;/option&amp;gt;
        &amp;lt;option name="rowNumbers"&amp;gt;false&amp;lt;/option&amp;gt;
        &amp;lt;option name="totalsRow"&amp;gt;false&amp;lt;/option&amp;gt;
        &amp;lt;option name="wrap"&amp;gt;true&amp;lt;/option&amp;gt;
      &amp;lt;/table&amp;gt;
    &amp;lt;/panel&amp;gt;
  &amp;lt;/row&amp;gt;
&amp;lt;/form&amp;gt;&lt;/LI-CODE&gt;</description>
      <pubDate>Mon, 27 Jun 2022 21:48:12 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Can-I-use-a-token-in-the-dynamic-search-option-for-an-input/m-p/603464#M49575</guid>
      <dc:creator>nadlurinadluri</dc:creator>
      <dc:date>2022-06-27T21:48:12Z</dc:date>
    </item>
    <item>
      <title>Re: Can I use a token in the dynamic search option for an input?</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Can-I-use-a-token-in-the-dynamic-search-option-for-an-input/m-p/603469#M49576</link>
      <description>&lt;P&gt;No that isn't what I'm trying doing. What you provided has a user input that creates a token which is then used in a search to populate a dashboard panel.&amp;nbsp;&lt;/P&gt;&lt;P&gt;What I want to do is use a token inside a dynamic input that is generated by a search. The token is generated by another user input field.&lt;/P&gt;&lt;LI-CODE lang="markup"&gt;&amp;lt;input type="multiselect" token="brand" searchWhenChanged="true"&amp;gt;
&amp;lt;label&amp;gt;brand&amp;lt;/label&amp;gt;
&amp;lt;fieldForLabel&amp;gt;field&amp;lt;/fieldForLabel&amp;gt;
&amp;lt;fieldForValue&amp;gt;field&amp;lt;/fieldForValue&amp;gt;
&amp;lt;search&amp;gt;
&amp;lt;query&amp;gt;index=* field2=$token$ | table field&amp;lt;/query&amp;gt;
&amp;lt;earliest&amp;gt;-1d&amp;lt;/earliest&amp;gt;
&amp;lt;latest&amp;gt;now&amp;lt;/latest&amp;gt;
&amp;lt;/search&amp;gt;
&amp;lt;/input&amp;gt;&lt;/LI-CODE&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 27 Jun 2022 22:21:03 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Can-I-use-a-token-in-the-dynamic-search-option-for-an-input/m-p/603469#M49576</guid>
      <dc:creator>klim</dc:creator>
      <dc:date>2022-06-27T22:21:03Z</dc:date>
    </item>
    <item>
      <title>Re: Can I use a token in the dynamic search option for an input?</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Can-I-use-a-token-in-the-dynamic-search-option-for-an-input/m-p/603517#M49579</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.splunk.com/t5/user/viewprofilepage/user-id/228254"&gt;@klim&lt;/a&gt;,&lt;/P&gt;&lt;P&gt;yes, it's possible, but could you share your code (input and search)?&lt;/P&gt;&lt;P&gt;Ciao.&lt;/P&gt;&lt;P&gt;Giuseppe&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jun 2022 06:41:17 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Can-I-use-a-token-in-the-dynamic-search-option-for-an-input/m-p/603517#M49579</guid>
      <dc:creator>gcusello</dc:creator>
      <dc:date>2022-06-28T06:41:17Z</dc:date>
    </item>
    <item>
      <title>Re: Can I use a token in the dynamic search option for an input?</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Can-I-use-a-token-in-the-dynamic-search-option-for-an-input/m-p/603626#M49593</link>
      <description>&lt;LI-CODE lang="markup"&gt;&amp;lt;form&amp;gt;
  &amp;lt;label&amp;gt;test&amp;lt;/label&amp;gt;
  &amp;lt;fieldset submitButton="false"&amp;gt;
    &amp;lt;input type="text" token="field2"&amp;gt;
      &amp;lt;label&amp;gt;field2&amp;lt;/label&amp;gt;
    &amp;lt;/input&amp;gt;
    &amp;lt;input type="multiselect" token="field1"&amp;gt;
      &amp;lt;label&amp;gt;field1&amp;lt;/label&amp;gt;
      &amp;lt;valuePrefix&amp;gt;index=&amp;lt;/valuePrefix&amp;gt;
      &amp;lt;delimiter&amp;gt; OR &amp;lt;/delimiter&amp;gt;
      &amp;lt;fieldForLabel&amp;gt;index&amp;lt;/fieldForLabel&amp;gt;
      &amp;lt;fieldForValue&amp;gt;index&amp;lt;/fieldForValue&amp;gt;
      &amp;lt;search&amp;gt;
        &amp;lt;query&amp;gt;index=* blah=$field2$ | stats count by index&amp;lt;/query&amp;gt;
        &amp;lt;earliest&amp;gt;-24h@h&amp;lt;/earliest&amp;gt;
        &amp;lt;latest&amp;gt;now&amp;lt;/latest&amp;gt;
      &amp;lt;/search&amp;gt;
    &amp;lt;/input&amp;gt;
  &amp;lt;/fieldset&amp;gt;
  &amp;lt;row&amp;gt;
    &amp;lt;panel&amp;gt;
      &amp;lt;title&amp;gt;test panel&amp;lt;/title&amp;gt;
      &amp;lt;table&amp;gt;
        &amp;lt;title&amp;gt;&amp;lt;/title&amp;gt;
        &amp;lt;search&amp;gt;
          &amp;lt;query&amp;gt;index=$field1$ | stats count by host&amp;lt;/query&amp;gt;
          &amp;lt;earliest&amp;gt;-24h@h&amp;lt;/earliest&amp;gt;
          &amp;lt;latest&amp;gt;now&amp;lt;/latest&amp;gt;
        &amp;lt;/search&amp;gt;
        &amp;lt;option name="drilldown"&amp;gt;none&amp;lt;/option&amp;gt;
      &amp;lt;/table&amp;gt;
    &amp;lt;/panel&amp;gt;
  &amp;lt;/row&amp;gt;
&amp;lt;/form&amp;gt;&lt;/LI-CODE&gt;&lt;P&gt;I have two user input fields. Field2 is populated by text and I want to use the input in that field in the user input field1's dynamic search option.&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jun 2022 16:36:25 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Can-I-use-a-token-in-the-dynamic-search-option-for-an-input/m-p/603626#M49593</guid>
      <dc:creator>klim</dc:creator>
      <dc:date>2022-06-28T16:36:25Z</dc:date>
    </item>
    <item>
      <title>Re: Can I use a token in the dynamic search option for an input?</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Can-I-use-a-token-in-the-dynamic-search-option-for-an-input/m-p/603627#M49594</link>
      <description>&lt;P&gt;Actually that example worked for me.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 28 Jun 2022 16:38:46 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Can-I-use-a-token-in-the-dynamic-search-option-for-an-input/m-p/603627#M49594</guid>
      <dc:creator>klim</dc:creator>
      <dc:date>2022-06-28T16:38:46Z</dc:date>
    </item>
  </channel>
</rss>

