- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Dear answers Yodas,
I'm trying to find out whether there is a available feature that allows me to go to a dashboard where I can enter a single value at which multiple searches are pointed. I want the results for those searches to populate multiple panels based on those searches. In my quiet, warm, softly-lit universe the XML would look like any other dashboard's, except there would be a variable in place of this value for all of the searches I want.
Does anyone have anything that approaches this functionality?
Thank you!
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
data:image/s3,"s3://crabby-images/1f594/1f594b1b4c0941863df1722dd52dd06a5b9a2e11" alt="Splunk Employee Splunk Employee"
This is exactly how forms (and views in general in Splunk) work. Please see: http://www.splunk.com/base/Documentation/latest/Developer/FormIntro and the rest of the form section. Advanced XML gives you even more flexibility.
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I totally knew that, i was just checking to see if you guys...
thanks.
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
data:image/s3,"s3://crabby-images/1f594/1f594b1b4c0941863df1722dd52dd06a5b9a2e11" alt="Splunk Employee Splunk Employee"
This is exactly how forms (and views in general in Splunk) work. Please see: http://www.splunk.com/base/Documentation/latest/Developer/FormIntro and the rest of the form section. Advanced XML gives you even more flexibility.
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
data:image/s3,"s3://crabby-images/1f594/1f594b1b4c0941863df1722dd52dd06a5b9a2e11" alt="Splunk Employee Splunk Employee"
You can find at least two examples in the ui_examples app. It's free and can be downloaded from www.splunkbase.com.
There are two views that might meet your needs.
1. form5:
Select sourcetype from a selection box.
...<input type="dropdown" token="sourcetype">
<label>Sourcetype</label>
...
Pass value to search string $sourcetype$ in multi HiddenSearch modules.
-OR-
2. Advanced_dashboard4:
Using advanced view XML.
1 lister driving multiple elements.
data:image/s3,"s3://crabby-images/2f34b/2f34b8387157c32fbd6848ab5b6e4c62160b6f87" alt=""