Dashboards & Visualizations

Enterprise 8.0: How to convert advanced xml dashboards to simple xml dashboards?

av_
Explorer

Can anyone explain me the steps to be followed to convert advanced xml dashboards to simple xml dashboards.

Labels (1)
Tags (1)
0 Karma
1 Solution

gcusello
SplunkTrust
SplunkTrust

Hi @av_,

I always anwered to this question some years ago.

Anyway you have to create one by one a new dashboard for each old one in the same app:

  • create a new dashboard with a similar name (only for mnemonic reasons),
  • create in the new dashboard a panel for each panel of the old one,
  • copy the search of each panel in the new one,
  • create all the inputs with the same logic,
  • update (at the end of the replacement activity) the App menu.

It's a long job, but there isn't any tool to do this.

Ciao.

Giuseppe

View solution in original post

av_
Explorer

Thanks @gcusello . I’ll try it out.

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @av_ ,

good for you, see next time!

Ciao and happy splunking

Giuseppe

P.S.: Karma Points are appreciated by all the contributors 😉

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @av_,

I always anwered to this question some years ago.

Anyway you have to create one by one a new dashboard for each old one in the same app:

  • create a new dashboard with a similar name (only for mnemonic reasons),
  • create in the new dashboard a panel for each panel of the old one,
  • copy the search of each panel in the new one,
  • create all the inputs with the same logic,
  • update (at the end of the replacement activity) the App menu.

It's a long job, but there isn't any tool to do this.

Ciao.

Giuseppe

Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...