Dashboards & Visualizations

Dashboard Studio - Is setting tokens from job results only available in v9?

stucky101
Engager

Hi

I'm trying to save the results of 2 queries on a dash to a token and then add them up into a 3rd query.

I'm running 8.2 and and it's beginning to look like all this only became available in 9 ?

https://docs.splunk.com/Documentation/Splunk/9.0.0/DashStudio/searchTokens

I dont see the button described here

  1. In the Edit Data Source panel, check the box for Use search results or job status as tokens.

 I tried some of the stuff like job.resultCount etc...but cannot get anything to interpolate.

Am I totally out of luck for v8.2 ?

Labels (1)
0 Karma

mpalarchio
Splunk Employee
Splunk Employee

Hi @stucky101 -  you are correct that search tokens are a feature that were just recently added in 9.0, whenever you upgrade to 9.0 or any future releases of Splunk you'll definitely be able to use search tokens in the way you're describing!

0 Karma
Get Updates on the Splunk Community!

Meet Duke Cyberwalker | A hero’s journey with Splunk

We like to say, the lightsaber is to Luke as Splunk is to Duke. Curious yet? Then read Eric Fusilero’s latest ...

The Future of Splunk Search is Here - See What’s New!

We’re excited to introduce two powerful new search features, now generally available for Splunk Cloud Platform ...

Splunk is Nurturing Tomorrow’s Cybersecurity Leaders Today

Meet Carol Wright. She leads the Splunk Academic Alliance program at Splunk. The Splunk Academic Alliance ...