Dashboards & Visualizations

Heatmap-style overlay at row level

southeringtonp
Motivator

Is there a way to highlight an entire row in a SimpleResultsTable based on the value of a single cell in that row?

Or to highlight one field in the row based on the value of another field?

I'm looking for something like the typical cell-based heatmap, but applied to the entire event, e.g., to highlight high-severity events.

rsennett_splunk
Splunk Employee
Splunk Employee

Still no "one click " way to accomplish this but I believe you can accomplish what you're looking for using css and javascript.

Start by looking at the answer here and follow the trail. You'll find examples of using css and javascript as well as a reference to an app that provides examples of how you might implement it (the app is for rowcolors).

With Splunk... the answer is always "YES!". It just might require more regex than you're prepared for!

araitz
Splunk Employee
Splunk Employee

RicoSuave
Builder

I had the same problem, so instead of relying on a SimpleResultsTable, i used the SingleValue module + the stats count command with a rangemap applied to it.

0 Karma

southeringtonp
Motivator

What I had in mind was more for comparison against an absolute, pre-defined threshold, but even using the existing heatmap functionality would be a plus.

0 Karma

gkanapathy
Splunk Employee
Splunk Employee

e.g., if I have columns in a single table that are of widely vary magnitude across columns (but not within a column), the heatmap is much less useful.

gkanapathy
Splunk Employee
Splunk Employee

Yeah, I would like to see an option to have heatmap colors relative to the values present in a single column, rather than over all numeric values in a table.

Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Community Content Calendar, September edition

Welcome to another insightful post from our Community Content Calendar! We're thrilled to continue bringing ...

Splunkbase Unveils New App Listing Management Public Preview

Splunkbase Unveils New App Listing Management Public PreviewWe're thrilled to announce the public preview of ...

Leveraging Automated Threat Analysis Across the Splunk Ecosystem

Are you leveraging automation to its fullest potential in your threat detection strategy?Our upcoming Security ...