Dashboards & Visualizations

Can you help me with my drill down dashboard?

grreddy
New Member

Hello Splunkers,

I created an internal drill down dashboard. But, when I tried to click a particular row in thedashboard, it didn't select. And, another row is also not getting to the results. Please help what is error i didnt get.

test1

<panel>
  <table>
    <search>
      <query>index=king | top 5 clientip</query>
      <earliest>0</earliest>
      <sampleRatio>1</sampleRatio>
    </search>
    <option name="drilldown">row</option>
    <option name="count">20</option>
    <option name="dataOverlayMode">none</option>
    <option name="drilldown">none</option>
    <option name="percentagesRow">false</option>
    <option name="rowNumbers">false</option>
    <option name="totalsRow">false</option>
    <option name="wrap">true</option>
    <drilldown>
      <set token="tokentest">$row.clientip$</set>
    </drilldown>
  </table>
</panel>


<panel>
  <table>
    <search>
      <query>index=king clientip=$tokentest$ | stats count by categoryId</query>
    </search>
  </table>
</panel>

alt text

Tags (1)
0 Karma

kamlesh_vaghela
SplunkTrust
SplunkTrust

@grreddy

Can you please set drilldown option row??

 <option name="drilldown">row</option>

Thanks

Ref: https://docs.splunk.com/Documentation/Splunk/7.2.3/Viz/DrilldownIntro

0 Karma

grreddy
New Member

its kk fine ,but problem is ,iam already create sample dashboard in the stats format.i try to cleck the row or cell ,its dose not select.

0 Karma

kamlesh_vaghela
SplunkTrust
SplunkTrust

Can you please share full XML with sample searches ( dummy index name,sourcetype and field name) ??

0 Karma
Get Updates on the Splunk Community!

See just what you’ve been missing | Observability tracks at Splunk University

Looking to sharpen your observability skills so you can better understand how to collect and analyze data from ...

Weezer at .conf25? Say it ain’t so!

Hello Splunkers, The countdown to .conf25 is on-and we've just turned up the volume! We're thrilled to ...

How SC4S Makes Suricata Logs Ingestion Simple

Network security monitoring has become increasingly critical for organizations of all sizes. Splunk has ...