Dashboards & Visualizations

How to use dynamic tokens for dbxquery?

aganguri
Observer

Hello Everyone,

I have a requirement in which I need to create a dashboard, which has separate panels for each sale category it is based up sale _type selected.  This chart should show up the time stamp and the time taken for the transaction call for that sale_category.

For that I need one static dropdown which lists the sale_type and second one which comes up with categories dynamically upon selection of sale item. also, each category should have a separate panel which shows up the time and the duration of each call made.

The table contains columns (Time_Stamp, Sale_type, Sale_Category, Min_value, Max_value, Mean_Value, count_calls)

example:
Sale_type => (Refreshments, Dinner, Lunch, Breakfast)

Sale_Category=>
Refreshments - (Juice / Milkshake / lassi)
Dinner - (Pasta, chicken wings)
Lunch - (Fried rice, Pizza)
Breakfast - (Toast, Donut, Bagels) 

So far, I'm using this.

| dbxquery shortnames=t connection=xxx query="select sale_type,sale_category, avg(execmin) as min,avg(execmean) as mean, avg(execmax)as max from
(Select sale_type,sale_category,execmin,execmax,execmean,object from XXX)
group by sale_type,sale_category" | search sale_type=$saletype$

Thank you.

Tags (2)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Depending on how you populate the dropdowns, you could use the token from the first dropdown to filter the choices for the second dropdown.

0 Karma

aganguri
Observer

Can you please explain more on how to perform that.

Currently I'm using dbxquery to fetch the data from database, but when I use the same splunk search under dynamic drop-down functionality to generate the fields, it is not populating the data I don't see any entries. 

| dbxquery shortnames=t connection=xxx query="select sale_item from sales_table"

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Please share your dashboard source code.

0 Karma

aganguri
Observer

Any help on this please.

0 Karma
Get Updates on the Splunk Community!

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

Splunk Decoded: Business Transactions vs Business IQ

It’s the morning of Black Friday, and your e-commerce site is handling 10x normal traffic. Orders are flowing, ...

Fastest way to demo Observability

I’ve been having a lot of fun learning about Kubernetes and Observability. I set myself an interesting ...