Dashboards & Visualizations

Running different search for a particular ip

CorpusCallosum
Explorer

Hi All

I would like run different search for a particular IP address. For example, a dashboard including a text box. you write your ip and see the results belongs to different searches regarding the ip. How are the main steps to do that?

Listing activity for a particular ip

Any help is appreciated.
Thanks

0 Karma
1 Solution

jtrucks
Splunk Employee
Splunk Employee

Use XML to have an input field that sets a variable, and then each search on the page contains that variable where it needs to be.

For example:

<fieldset>
    <input type="text" token="ipaddress">
        <label>IP</label>
    </input>
</fieldset>

Then your search might be:

<searchString>
|search $ipaddress | chart ....
</searchString>

etc...

--
Jesse Trucks
Minister of Magic

View solution in original post

jtrucks
Splunk Employee
Splunk Employee

Use XML to have an input field that sets a variable, and then each search on the page contains that variable where it needs to be.

For example:

<fieldset>
    <input type="text" token="ipaddress">
        <label>IP</label>
    </input>
</fieldset>

Then your search might be:

<searchString>
|search $ipaddress | chart ....
</searchString>

etc...

--
Jesse Trucks
Minister of Magic

alacercogitatus
SplunkTrust
SplunkTrust

You are going to want to review this page: http://docs.splunk.com/Documentation/Splunk/5.0.3/Viz/Exampleform. Each Situation is different, but essentially, you want to make a simple form with some tables that execute the search based off of the inputted IP address.

Get Updates on the Splunk Community!

Now Playing: Splunk Education Summer Learning Premieres

It’s premiere season, and Splunk Education is rolling out new releases you won’t want to miss. Whether you’re ...

The Visibility Gap: Hybrid Networks and IT Services

The most forward thinking enterprises among us see their network as much more than infrastructure – it's their ...

Get Operational Insights Quickly with Natural Language on the Splunk Platform

In today’s fast-paced digital world, turning data into actionable insights is essential for success. With ...