Dashboards & Visualizations

Dashboard Studio - Is setting tokens from job results only available in v9?

stucky101
Engager

Hi

I'm trying to save the results of 2 queries on a dash to a token and then add them up into a 3rd query.

I'm running 8.2 and and it's beginning to look like all this only became available in 9 ?

https://docs.splunk.com/Documentation/Splunk/9.0.0/DashStudio/searchTokens

I dont see the button described here

  1. In the Edit Data Source panel, check the box for Use search results or job status as tokens.

 I tried some of the stuff like job.resultCount etc...but cannot get anything to interpolate.

Am I totally out of luck for v8.2 ?

Labels (1)
0 Karma

mpalarchio
Splunk Employee
Splunk Employee

Hi @stucky101 -  you are correct that search tokens are a feature that were just recently added in 9.0, whenever you upgrade to 9.0 or any future releases of Splunk you'll definitely be able to use search tokens in the way you're describing!

0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...