Dashboards & Visualizations

Splunk Dashboard Visualization - Custumize PDF Generation

ESIMatNeforce
Path Finder

Hello fellow splunkers,

I currently struggle to realize a reporting concept within my splunk environment. In short, what I want to do is the following: I want to schedule a daily report to be generated and mailed to a specific person. This report should ideally be a one page pdf fil. It should contain a list of defined key performance indicators for which saved searches exist to calculate them.

What I did to implement this is to create a dashboard containing all my KPIs and use the "schedule pdf delivery" feature to send a pdf. Now that PDF really does not look good for displaying single key/value pairs surch as: "Amount of website visitors: 34" - only 7 KPIs already need one page A4.

Is there any possibility to customize the pdf generated? I already found out about the python files that specify certain parameters of the pdf file, such as margins, etc. Unfortunately I am no programmer guy and would certainly prefer a different solution to my problem. Does anybody know a workaround solution to get my KPIs displayed in a simple list or table or something like that? In the worst case it would also be OK to display them in the dashboard itself, but they should be in somewhat list- or table-like and not visualization that fills up the whole screen with only 7 values displayed.

Thanks for your help!

MaverickT
Communicator

In my case I did it by adding each KPI in one column of the table. So I could get like 5 KPI per line, which was sufficient enought for my problem.

There is always some workaround 🙂

somesoni2
Revered Legend

How about appending result of all the saved searches into one and then using showing them in a HTML module, which can be configured better?

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...

Splunk Cloud Application Management in Terraform

Now On-Demand   We’re diving into how you can bring Infrastructure as Code (IaC) principles to your Splunk ...

What's New in Splunk Enterprise Security (ES) 8.6

Purpose-Built AI Agents for the Agentic SOC  Splunk Enterprise Security 8.6 expands AI in Security with ...