Dashboards & Visualizations

dbquery not work in dashboard

coope84
New Member

hello, here is my query string: | dbquery dbcenter "select (1 - (phy.value / (cur.value + con.value))) *100 \"HIT RATIO\" from v$sysstat cur, v$sysstat con, v$sysstat phy where cur.name = 'db block gets' and con.name = 'consistent gets' and phy.name = 'physical reads'" ,It's worked in the search app,but I cannot see results when use dbquery in dashboard, here is my xml





data buffer
| dbquery dbcenter "select (1 - (phy.value / (cur.value + con.value))) *100 \"HIT RATIO\" from v$sysstat cur, v$sysstat con, v$sysstat phy where cur.name = 'db block gets' and con.name = 'consistent gets' and phy.name = 'physical reads'"
0
now
true
false
none
row
10
visible
visible
linear
linear
radialGauge
gaps
0.01
default
shiny
all
0
ellipsisMiddle
right


Tags (3)
0 Karma

martin_mueller
SplunkTrust
SplunkTrust

Without grasping the entirety of your post due to bad formatting, I see single dollar signs in your query. Escape those with another dollar sign to get $$, to avoid Splunk trying to replace $foo$ tokens.

0 Karma
Get Updates on the Splunk Community!

Fun with Regular Expression - multiples of nine

Fun with Regular Expression - multiples of nineThis challenge was first posted on Slack #regex channel ...

[Live Demo] Watch SOC transformation in action with the reimagined Splunk Enterprise ...

Overwhelmed SOC? Splunk ES Has Your Back Tool sprawl, alert fatigue, and endless context switching are making ...

What’s New & Next in Splunk SOAR

Security teams today are dealing with more alerts, more tools, and more pressure than ever.  Join us on ...