Dashboards & Visualizations

Add a Drilldown in Splunk Dashboard with more than 60 indexes and 68 word problem?

Gordon1
Explorer

Hello everyone, 

How are you all doing? 

I have a dashboard ready. I'm having trouble placing the drilldowns.

The case is as follows: each index for example:  windows, linux, storage, would have to open a drilldown with the word problem. There are 68 worden problem and 60 indexes. 

 

Do you have any idea? 

Thank you very much!

Labels (1)
0 Karma
1 Solution

ITWhisperer
SplunkTrust
SplunkTrust

OK so, on which chart or table do you want to add a drilldown?

View solution in original post

ITWhisperer
SplunkTrust
SplunkTrust

It is not clear to me what you are trying to achieve. Please can you share what you currently have in your dashboard, some sample events (anonymised, of course), and what you expect to see when you click on your dashboard i.e. what the drilldown should do?

0 Karma

Gordon1
Explorer

Hello ITWhisperer, 

Thank you very much!

I am trying to show for example the result between: Linux and attack, Linus  and error, Linux and fail, Linux and failing, Linux and failed, Linux and fout.

Dan the same with Windows, firewall, aplication. 

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

This looks like a spreadsheet rather than a Splunk dashboard. Please share what you already have in Splunk

0 Karma

Gordon1
Explorer

I made this spreadsheet with the reason you can understand what I mean. I have de dashboard. 

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Cool 😀 Please can you share what you already have?

0 Karma

Gordon1
Explorer

I go it!!!

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

OK so, on which chart or table do you want to add a drilldown?

Get Updates on the Splunk Community!

Data Management Digest – December 2025

Welcome to the December edition of Data Management Digest! As we continue our journey of data innovation, the ...

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...