All Apps and Add-ons

Timeline - Custom Visualization: Additional fields can be added to the query, but where are these values shown in the visualization?

sarthakb
Explorer

http://docs.splunk.com/Documentation/CustomViz/1.0.0/Timeline/TimelineSearchDataFormat

The documentation mentions Splunk Timeline custom visualization query accepts other fields as last parameters. However, those field values are not shown in the tooltip when we hover over a box or a circle in the Timeline. I thought this would be a useful place to show this.

Can you please tell me where is this information currently shown in the timeline custom visualization?

And can this feature be added, if not already supported in current version?

0 Karma

frobinson_splun
Splunk Employee
Splunk Employee

Hi @sarthakb,
Following up here to let you know that we're filing a task to look into adding the additional fields to the tooltip for an upcoming release. I've updated our docs to reflect the current functionality more clearly.

Thank you!

joshualarkins
Explorer

Yeah, I'm looking to use Timeline and additional fields displayed in the tooltip would be a huge benefit.

0 Karma

nirtdcs
Engager

Are there any updates on this? Being able to add fields to the tooltip would be extremely useful.

0 Karma

frobinson_splun
Splunk Employee
Splunk Employee

Hi @sarthakb,
Thanks for your question. I will look into this with our engineering team to clarify this information. Please stay tuned for an update shortly.

0 Karma

jfrieling_splun
Splunk Employee
Splunk Employee

any update on this?

Get Updates on the Splunk Community!

Splunk Training for All: Meet Aspiring Cybersecurity Analyst, Marc Alicea

Splunk Education believes in the value of training and certification in today’s rapidly-changing data-driven ...

Investigate Security and Threat Detection with VirusTotal and Splunk Integration

As security threats and their complexities surge, security analysts deal with increased challenges and ...

Observability Highlights | January 2023 Newsletter

 January 2023New Product Releases Splunk Network Explorer for Infrastructure MonitoringSplunk unveils Network ...