Hi all,
I have two search queries using in dashboard. But these queries are quite similar.
First one looks like this .....for grid view
sourcetype=xxxxxx source=yyyyy | [ where clauses and some calcuate] |table job status
Second one looks like this .... for pie chart
sourcetype=xxxxxx source=yyyyy | [ where clauses and some calcuate] |table job status|stats count(job) by status
Consider to the performance and server load, can I create 1 searchmanager for handle this case?
Yes, you can. Post process is the solution
http://docs.splunk.com/Documentation/Splunk/6.1.3/AdvancedDev/PostProcess
May I know how it works in HTML dashboard? As the example code is using Advanced XML.
I've never tried with HTML, but there are nice examples in web framework tool kit if you can build your apps with django