Hi Everyone,
I have problem with search command in dashboard panel.
When I put below search:
source=isp_portal Message="Request Url - http*"
it works then I save dashboards
After saving the search, it does not work and look like below (without space)
source=isp_portal Message="Request Url-http*"
What should I set to prevent removing spaces in searches?
Thanks in advance for help
For your dashboard try replacing space with
source=isp_portal Message="Request Url - http*"
Hi cmeriman,
Splunk Version ............................................6.5.1S
Splunk Build ............................................f74036626f0c
Firstt i put Reports (with search which works) into dashboard ( Panel powered by Inline Search).
After couple of minutes , when I refreshing dashboard the reports does not presented data.
Then I click Edit Search in particular reports in dashboard and I see search string without spaces.
If you have the search saved as a report and it is working, why not keep it as a report in the dashboard panel instead of an inline search? Otherwise have you tried editing the search to put the spaces back in? I've never had a problem before, but I normally keep reports as reports in my dashboard panels instead of converting them.
what version of Splunk are you on? Did you save it to a dashboard from the search bar or create a new search while editing a dashboard?