Dashboards & Visualizations

Splunk dashboard

uagraw01
Motivator

IMG_20200725_231624__01.jpg

 How to hide this message in dashboard ?

Labels (1)
0 Karma

richgalloway
SplunkTrust
SplunkTrust

IME, there is no way to suppress that message.  Even using splunk_server=local does not help.

I've submitted a suggestion at https://ideas.splunk.com/ideas/EID-I-329 to hide such messages.  Please consider up-voting it.

---
If this reply helps you, Karma would be appreciated.

uagraw01
Motivator

@richgalloway Correct, i checked with splunk_server=local, but is not working.

0 Karma

niketn
Legend

@uagraw01 the dispatch_rest_to_indexers is usually granted to folks with Admin roles.  If it is not provisioned results are returned locally from SH. As far as you are getting the result back you would not need to grant the role access to the users whom you do not want to push REST request to Indexers.

Refer to documentation: https://docs.splunk.com/Documentation/Splunk/latest/Security/Rolesandcapabilities

 

____________________________________________
| makeresults | eval message= "Happy Splunking!!!"

uagraw01
Motivator

@niketn Thanks for your suggestion

0 Karma

The_Simko
Path Finder

In your search, you could try to place splunk_server=local in the search.

Assuming you intend it to be ran only on the SH, then it's even better than masking the message.

uagraw01
Motivator

@The_Simko Yes i tried but it is not working

0 Karma
Get Updates on the Splunk Community!

Unlock Database Monitoring with Splunk Observability Cloud

  In today’s fast-paced digital landscape, even minor database slowdowns can disrupt user experiences and ...

Purpose in Action: How Splunk Is Helping Power an Inclusive Future for All

At Cisco, purpose isn’t a tagline—it’s a commitment. Cisco’s FY25 Purpose Report outlines how the company is ...

[Upcoming Webinar] Demo Day: Transforming IT Operations with Splunk

Join us for a live Demo Day at the Cisco Store on January 21st 10:00am - 11:00am PST In the fast-paced world ...