I try to add a time filter using time input in Splunk dashboard website, look like this:
The default is "All time", and this is my search on the visualization:
But when I set the time picker to "Today" the visualization not updating or not refreshing the search for today's data.
What I expect is whatever I set the time picker input, the search will run according to the time picker that I set it.
How can I solve this?
Thanks in advance
Hi @mathiasy123 ,When you put the Dashboard in edit mode, click the small "edit pencil" next to the time picker.In the time tab is a radiobox "search on change". Acticate this one and you should be fine.Hope it helps.BRRalph
View solution in original post
It worked! I have to set the token too