Dashboards & Visualizations

Alert dashboard

logloganathan
Motivator

Could anyone help to build dashboard for alerts.

how many alert email i got like that?

0 Karma

493669
Super Champion

Hi @logloganathan ,
Below app will help to view fired alerts in dashboards in order to investigate.
https://splunkbase.splunk.com/app/2665/

0 Karma

logloganathan
Motivator

Thanks for the response i need some query help...

0 Karma

richgalloway
SplunkTrust
SplunkTrust

Please explain what you mean by "dashboard for alerts".

---
If this reply helps you, Karma would be appreciated.
0 Karma

logloganathan
Motivator

i want to get diaplayed of alert triggered and email sent

0 Karma

Sukisen1981
Champion

hi @logloganathan - You are probably using an email subject with static sentence and some dynamic tokens and the same in the mail body.
Assuming you build a 1 panel dashboard you can just have count as first column, the subject in second column and the body in the 3rd column.
Basically, if you are able to pass tokens to the email subject and body (along with standard static text) , there is no reason why you can not do the same with the same search query in a panel. How you want the look and feel of the panel is up to you.

0 Karma

Sukisen1981
Champion

hi @logloganathan
The easiest way is to have the same search THAT triggers your alert saved as a panel in your dashboard.
For example, index="aaa"|stats count|where count >0 run at an hourly frequency which triggers if count>0. The same search saved as a panel with a bin of 1 hour , for say over the last 24 hrs will give you the number of alerts you received due to this alert in the last 24 hrs.
But are you asking for something else :)?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

SOK it to Me: Top 3 Benefits of Using Splunk Operator on Kubernetes that’ll Make ...

    Thursday, July 9, 2026  |  11:00AM–12:00PM PDT Duration: 1 hour (includes Q&A) Managing can feel like a ...

Upgrade Prep for 10.4, Network Observability Deep Dives, and More from Splunk Lantern

Splunk Lantern is Splunk’s customer success center that provides practical guidance from Splunk experts on key ...

Splunk Developer Day announcements: AI agents, MCP tools, Forecasting, and Custom ...

Splunk Developer Day was packed with product and platform updates for developers building in the AI ...