Dashboards & Visualizations

Dashboard Studio: Event Panel in the Table Visualization Format

lcguilfoil
Path Finder

Hello! I am using Dashboard Studio. I created an Events visualization that is currently in the List view. I want to make it into the Table view. This is the source code for the Dashboard Studio dashboard:

 

{
	containerOptions: {},
	"context": {},
	"dataSources": {
		"primary": ds             # the query is index=* | table field1, field2, field3
	},
	"options": {},
	"showLastUpdated": false,
	"showProgressBar": true,
	"type": "splunk.events"
}

 

 

I created something similar to what I'm looking for in Dashboard Classic and this is the code:

 

<panel>
	<event>
		<search>
			<query>index=*</query>
			<earliest>$global_time.earliest$</earliest>
			<latest>$global_time.latest$</latest>
		</search>
		<fields>field, field2, field3</fields>
		<option name="type">table</option>
	</event>
</panel>

 

Labels (3)
0 Karma

livehybrid
SplunkTrust
SplunkTrust

Hi @lcguilfoil 

Change your "splunk.events" to "splunk.table" 

So its like this example:

"viz_URfuD3f4": {
            "containerOptions": {},
            "context": {},
            "dataSources": {
                "primary": "ds_0zCzRLMd"
            },
            "options": {},
            "showLastUpdated": false,
            "showProgressBar": false,
            "type": "splunk.table"
        }

 

Please let me know how you get on and consider adding karma to this or any other answer if it has helped.
Regards

Will

0 Karma

lcguilfoil
Path Finder

Hi @livehybrid,

I appreciate your comment! That's not exactly what I'm looking for. I don't want to use the Table panel, but instead I want to change the Event panel's display to table. I apologize if what I'm saying is unclear. The best example I can give is the same thing I'm aiming for in the Classic Dashboard:

<panel>
	<event>
		<search>
			<query>index=*</query>
			<earliest>$global_time.earliest$</earliest>
			<latest>$global_time.latest$</latest>
		</search>
		<fields>field, field2, field3</fields>
		<option name="type">table</option>
	</event>
</panel>

 

0 Karma
Get Updates on the Splunk Community!

Index This | What is broken 80% of the time by February?

December 2025 Edition   Hayyy Splunk Education Enthusiasts and the Eternally Curious!    We’re back with this ...

Unlock Faster Time-to-Value on Edge and Ingest Processor with New SPL2 Pipeline ...

Hello Splunk Community,   We're thrilled to share an exciting update that will help you manage your data more ...

Splunk MCP & Agentic AI: Machine Data Without Limits

Discover how the Splunk Model Context Protocol (MCP) Server can revolutionize the way your organization uses ...