Dashboards & Visualizations

How can I make a token optional, so Dashboard Autorun will run even when the text input is blank?

sillingworth
Path Finder

I have a text input that sets a token which is used in my panels, as a manual filter the user can input. By default I want this to be blank so that no results are filtered out. However, if I do this the dashboard won't autorun, it'll stay on "Search is waiting for input...". If you put "&form.token_name=" in the URL it works, but I want the dashboard to autorun by default with no value in the filter token.

Tags (2)
0 Karma

jodyfsu
Path Finder

Set the token as "*" and it will still run and return results.

0 Karma

sillingworth
Path Finder

Yeah, I know I can do that, but I'd really like it to work when left blank. I just think it looks nicer and more intuitive - I don't want users wondering why it hasn't worked when they haven't put anything in the filter box.

0 Karma

DalJeanis
Legend

@sillingworth - any other method is going to be much more complicated. For instance, you could have a second token, the REAL search token, and preset that. Then, on change of your input token, you could update the value in your actual search token.

However, be warned that if you want to do any validation on the values input by the user, that you need to be careful to avoid a race condition (token 1 sets token 2 which sets token 1 forever).

0 Karma

sillingworth
Path Finder

Hmm, that's worth considering.... thanks 🙂

@Splunk - just give us an input option to allow blanks please!

0 Karma
Get Updates on the Splunk Community!

Cloud Platform & Enterprise: Classic Dashboard Export Feature Deprecation

As of Splunk Cloud Platform 9.3.2408 and Splunk Enterprise 9.4, classic dashboard export features are now ...

Explore the Latest Educational Offerings from Splunk (November Releases)

At Splunk Education, we are committed to providing a robust learning experience for all users, regardless of ...

New This Month in Splunk Observability Cloud - Metrics Usage Analytics, Enhanced K8s ...

The latest enhancements across the Splunk Observability portfolio deliver greater flexibility, better data and ...