Dashboards & Visualizations

How to display only certain fields from data source in table for dashboard studio?

rajashekar_s
Path Finder

Hello,

I have been building a dashboard in dashboard studio and was looking for some help wrt implementing the fields option in XML dashboard in dashboard studio

If my panel in XML dashboard has like 5 fields and I want to display only 3 in the table, we can use this

<fields>[field1,field2,field3]</fields>

However when I download the panel results, I will still be able to view all the 5 fields with this

 

I am looking to do something same in dashboard studio and I am not able to get the functionality. I have tried using header option in Table option and didn't get any success.

 

{
"type": "splunk.table",
"options": {
"tableFormat": {
"headerBackgroundColor": "#0E6162",
"rowBackgroundColors": "> table | seriesByIndex(0) | pick(tableAltRowBackgroundColorsByBackgroundColor)",
"rowColors": "> rowBackgroundColors | maxContrast(tableRowColorMaxContrast)",
"headerColor": "> headerBackgroundColor | maxContrast(tableRowColorMaxContrast)"
},
"backgroundColor": "#ffffff",
"table": "> [\"field1\",\"field2\"]", -> didnt work
"headers": "> table | getField([\"field1\",\"field2\"])", -> didnt work
"showInternalFields": false
},
"dataSources": {
"primary": "ds_TlbXBz5i"
},
"context": {},
"showProgressBar": false,
"showLastUpdated": false
}
Labels (2)
0 Karma

lindonmorris
Explorer

Hi, I was going to reply and ask if you ever solved this, but I just did myself.

Name your field _something and untick "show hidden fields". By default the only hidden field that shows is _time, doing this effectively hides your other fields.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Automated Threat Analysis: Available in ES Premier

Automated Threat Analysis: Centralize and Accelerate Phishing Investigations in Splunk Enterprise ...

What’s New in Splunk AI: Volume 02

Welcome to the second edition of “What’s New in Splunk AI” where we look at the latest and greatest updates, ...

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...