Dashboards & Visualizations

Can users add notes to Splunk Dashboard?

sumarri
Path Finder

So, I want to create a dashboard for a particular team in my company and they want to add notes to dashboard for everyone on their team to view. Is that possible, and if yes, can you refer me to something? 

 

Thank you! 

0 Karma
1 Solution

PickleRick
SplunkTrust
SplunkTrust

There is no out-of-the-box component that gives you this functionality. With classic dashboards you can add your own javascript code that will take care of storing the "notes" into kvstore so that it can be shared and updated but it is something you'd need to write yourself. And there are several possible issues with that (including of course permissions management, concurrent access and so on). So it's not that straightforward.

View solution in original post

gcusello
SplunkTrust
SplunkTrust

Hi @sumarri ,

Splunk isn't a database wre you can manually write notes.

The only way it to add to your dashboard a link to a lookup to open using Splunk App for Lookup Editor,

or use a workaround that I described in one past answer: https://community.splunk.com/t5/Dashboards-Visualizations/Dynamically-Update-a-lookup-file-on-click-...

Ciao.

Giuseppe

sumarri
Path Finder

So, they want to add notes and have them on live for them to view. 

So on the dashboard, I will have tables and a notes section and they want to add note to the table/section on the dashboard view. Is that possible??? 

I can make a lookup maybe or something, but I think I did not communicate what I wanted. 

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @sumarri ,

no, as @PickleRick said, it isn't possible.

My solution permits to add a note to a record in a lookup, but it isn't your requirement.

Ciao and happy splunking

Giuseppe

P.S.: Karma Points are appreciated by all the contributors 😉

0 Karma

PickleRick
SplunkTrust
SplunkTrust

There is no out-of-the-box component that gives you this functionality. With classic dashboards you can add your own javascript code that will take care of storing the "notes" into kvstore so that it can be shared and updated but it is something you'd need to write yourself. And there are several possible issues with that (including of course permissions management, concurrent access and so on). So it's not that straightforward.

sumarri
Path Finder

So there is no way I cold do it on Dashboard Studio... but I can do it on Classic because I can edit the java script? 

 

Thank you so much for the idea!

0 Karma

PickleRick
SplunkTrust
SplunkTrust

Yes. Dashboard Studio doesn't allow as much customizations as classic dashboards - no custom visualizations, no custom code. But still in classic you'd have to implement it all by yourself (but hey, that's how half of Enterprise Security is written ;-))

Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk, and empower your SOC to reach new heights! Duration: 1 hour  Prepare to ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...