I am making an add-on that will be installed in a couple of different splunk environments.
The different splunk environments use different index names for the "same" data.
I would like to make my search string somehow configurable, so the index that it searches can be configurable by the end user.
I know there are the $token$ values that can be used in panel search queries. Is it possible to populate the $token$ value from a local .conf file perhaps?
I found a related questions here:
It looks like the setup.xml is what I need to include in my app:
Hey @joshuapetitt, Did the setup.xml resolve your problem?
maybe? I am still researching how to properly setup setup.xml 😉 The one portion I'm still not 100% sure on is after I do have a working setup.xml, how I would reference the .conf value in the dashboard panel as a token?