Dashboards & Visualizations

Table of "Single value"s

darioapis
Explorer

Hi, I want to have table of single values (single values with indicator of movement(percentage)). The first column is name and the second is the single value. Name should be loaded from csv, for example with inputlookup. The second column should be a result of a new search. So can anyone help me construct some backbone of that search. Main problem would probably be table of single values and how to generate new search with every line in that csv.
Thanks.

0 Karma
1 Solution

woodcock
Esteemed Legend

No, no, no. You should not be generating multiple searches. Generate one big search with many OR clauses and then use the newish Trellis feature:

https://docs.splunk.com/Documentation/Splunk/latest/Viz/VisualizationTrellis

View solution in original post

woodcock
Esteemed Legend

No, no, no. You should not be generating multiple searches. Generate one big search with many OR clauses and then use the newish Trellis feature:

https://docs.splunk.com/Documentation/Splunk/latest/Viz/VisualizationTrellis

darioapis
Explorer

thanks very much 🙂

0 Karma

adonio
Ultra Champion

what is the data looks like? what is the common field for the lookup?
my guess is that you would like to use sparkline as this is the "Indicator of movement" for a table visualizations.
what search have you tried so far?
with all the respect, please give us a little but more
its almost seems like you are asking us to do your homework for you

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Can’t Make It to Boston? Stream .conf25 and Learn with Haya Husain

Boston may be buzzing this September with Splunk University and .conf25, but you don’t have to pack a bag to ...

Splunk Lantern’s Guide to The Most Popular .conf25 Sessions

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Unlock What’s Next: The Splunk Cloud Platform at .conf25

In just a few days, Boston will be buzzing as the Splunk team and thousands of community members come together ...