Dashboards & Visualizations

Dynamic Dashboard

hartfoml
Motivator

I am monitoring the CPU use of the Splunk UF using WMI on my windows systems
I have this search;

source="WMI:LocalProcesses" Name=splunkd host="SYS20"| bucket _time span=1h | stats avg(PercentProcessorTime) AS "Average % CPU" by _time

this lets me see the Splunk UF CPU use over time for "sys20"

I can make this a dashboard without a problem.

My question is how do I make a dashboard with a pull-down list of "system names" and "Search time" so that I can make the dashboard available for system owners so they can see how much of the CPU resource Splunk is using on there system.

I have been using Splunk for 1 1/2 years and am at version 4.3 but I am not a developer.

Any help would be great.

Tags (1)
0 Karma

stjack99
Explorer

You need to make a form instead of a dashboard. Oddly enough, I've started building almost the exact form you are, except I ran into a problem using the radial gauge. You can borrow my code and use it as a template, I posted it here: http://splunk-base.splunk.com/answers/38610/radial-gauge-not-showing-in-form. All you need to do is add the time selection to the fieldset section, and of course, change the queries to match what you want.

Everything there works except for the gauge.

0 Karma

hartfoml
Motivator

Thanks I really appreciate the help

Now I need to read up on how to implement forms

I got you code. I'll let you know if I can figure out how to implement it.

Mike H.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Fuel Your Journey: What’s Waiting for You at the .conf26 Acceleration Station

Navigating the show floor at .conf26 isn't just about keynotes and technical breakout sessions; it's also ...

Join the Final Session of the Data Management & Federation Bootcamp Series

Over the past three sessions of the Data Management & Federation Bootcamp Series, we've explored how to build ...

From Data to Insight: Announcing the Winners of the Splunk Dashboard Contest

Hi Splunkers, First off, thank you to everyone who participated in our very first From Data to Insight: The ...