Dashboards & Visualizations

Drilldown of the values in table

splunkpoornima
Communicator

Hi all i have the below table .

TaskName count

Task1 12

Task2 1

Task3 34

the query used is source="aadd"|chart count by TaskName

i want to do drilldown for those values ..means if i click the Task1 i want to see the trend chart of that task over time

there any option to configure the XML in the dashboard

Tags (1)
0 Karma

sideview
SplunkTrust
SplunkTrust

Not with the Simple XML, no. But with the Advanced XML absolutely.

If you want to use just the core Splunk UI, I recommend downloading and installing the "UI Examples app for 4.1" app from Splunkbase, and reading through all of the documentation and example views in this section:

"Advanced XML > Drilldown Examples"

You can get the UI Examples app installed by either going to "Manager > Apps > Install app from file", or by going to http://splunk-base.splunk.com/apps/22333/splunk-ui-examples-app-for-41 and downloading the tar.gz file yourself and installing it manually on your Splunk instance.

And if you're already using Sideview Utils, (get latest 2.2.2 version for free from http://sideviewapps.com/apps/sideview-utils ), then drilldowns become a lot easier, primarily because you don't have to deal with intentions anymore. And Sideview Utils has it's own docs and example views showing you how to put together the XML ( See "Key Techniques > Inline Drilldown")

Get Updates on the Splunk Community!

🔐 Trust at Every Hop: How mTLS in Splunk Enterprise 10.0 Makes Security Simpler

From Idea to Implementation: Why Splunk Built mTLS into Splunk Enterprise 10.0  mTLS wasn’t just a checkbox ...

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

Splunk Decoded: Business Transactions vs Business IQ

It’s the morning of Black Friday, and your e-commerce site is handling 10x normal traffic. Orders are flowing, ...