Dashboards & Visualizations

Identical dashboards displaying differently

kmattern
Builder

I develop on one Splunk instance and then copy the work to another Splunk instance for testing prior to it going into production. To install the app on the test system I tar it up and install it through Manager. I know that all the code on the two machines for this particular app is identical. I have run diffs on everything. So why do they display differently? And, yes, the css is identical on both boxes.

What's really interesting is that some users see the same on both machines; the one shown in test below. And one person sees the same on both machines but sees what is shown in the dev screenshot below. To the best of my knowledge I am the only one who sees different dashboards on each box.

When drilling down from the first dashboard the second will display two panels when only one is referenced in the XML. I have close to 200 dashboards and this is the only one that is acting up.

Any ideas will be helpful. This is too bizarre.

This is the dashboard on Dev
alt text

This is the same dashboard on the Test box
alt text

Tags (1)

sideview
SplunkTrust
SplunkTrust

If you're each using your own user accounts when accessing the instances, I'm guessing that sometimes there's a version of the app saved to the /local directory in the app, or to the etc/users/<username>/<appname>/ directory. If so then either of those would be overriding the default XML at the app level, and that's the only thing that could explain the different number of panels. And if css tweaks were ever made in the dashboards it could explain that too.

0 Karma

kmattern
Builder

That's what I thought. But I looked for duplicates and found none.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Data Management Digest – September 2026

    Welcome to the September 2026 edition of Data Management Digest! September brought a fresh wave of ...

Federated Search for CloudWatch Unified Data Store Is Generally Available

As organizations modernize their cloud environments, AWS workloads generate more security, operational, and ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...