Dashboards & Visualizations

Splunk Dashboard Dropdown Input/filter not returning anything

chongdong
Explorer

Hi all,

I have encountered a weird issue in Splunk.

Basically I have added a dropdown input/filter with the following settings: 

chongdong_0-1675132188444.png

But after hitting "Apply", it says "Search produced no results".

The weird thing is if I run the search seperately, it does have results:

chongdong_1-1675132275303.png

So does Splunk disallow using the following query in the filter/input? 

|dbxquery connection=100892_intelligence query="SELECT zone_name from win_data"

Labels (1)
0 Karma
1 Solution

bowesmana
SplunkTrust
SplunkTrust

You are selecting the zone_name field but your field for label/value are label and uniqueid. Do you have those fields in your returned dbxquery data?

View solution in original post

bowesmana
SplunkTrust
SplunkTrust

You are selecting the zone_name field but your field for label/value are label and uniqueid. Do you have those fields in your returned dbxquery data?

chongdong
Explorer

You are right! Thanks for pointing it out. Now it works! 

chongdong_1-1675191510201.png

 

 

0 Karma

bowesmana
SplunkTrust
SplunkTrust

That's good - please mark the answer as the solution, as it makes it clear for others to find solutions to similar issues. Thanks.

0 Karma
Get Updates on the Splunk Community!

Monitoring Postgres with OpenTelemetry

Behind every business-critical application, you’ll find databases. These behind-the-scenes stores power ...

Mastering Synthetic Browser Testing: Pro Tips to Keep Your Web App Running Smoothly

To start, if you're new to synthetic monitoring, I recommend exploring this synthetic monitoring overview. In ...

Splunk Edge Processor | Popular Use Cases to Get Started with Edge Processor

Splunk Edge Processor offers more efficient, flexible data transformation – helping you reduce noise, control ...