Dashboards & Visualizations

Can I display the results from multiple queries in a single value panel?

pshangguan
New Member

I have some queries:

index=job_console source="DEV2" "Finished:" | sort - _time
<_time value here> Result: 2018-10-16T12:43:04.100-0700 line:30 Finished: FAILURE

index=job_console source="DEV2" "Finished: SUCCESS" | sort - _time
<_time value here> Result: 2018-10-16T12:15:14.888-0700 line:20 Finished: SUCCESS

index=jenkins_console source="DEV2" "DATAFLOW " | sort - _time
<_time value here> 2018-10-16T12:43:03.125-0700 line:26 DATAFLOW FAIL: RFL_REPL

I want to display the last run status, which is "FAILURE" from the above first query, the last successful time _time, which is from the second query, and the failure reason for the last run which is from the 3rd query in a single value panel, use the "title" fields.

Can I can do all three queries?

Thanks!

0 Karma
Get Updates on the Splunk Community!

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

 Prepare to elevate your security operations with the powerful upgrade to Splunk Enterprise Security 8.x! This ...

Get Early Access to AI Playbook Authoring: Apply for the Alpha Private Preview ...

Passionate about security automation? Apply now to our AI Playbook Authoring Alpha private preview ...

Reduce and Transform Your Firewall Data with Splunk Data Management

Managing high-volume firewall data has always been a challenge. Noisy events and verbose traffic logs often ...