Dashboards & Visualizations

replacing no results found with 0 with a color in Splunk dashboard

anil1219
Engager

Hi Team,

How to replace no results found with 0 with a color in Splunk dashboard.

I know that by appending below it update 'no results found' with 0 value.

| appendpipe [stats count | where count=0]

But it comes with red color as 0 value, I want to change to green color.

even if I have changed Format Visualization --> Color range 

from 0-5 as Green

5-max as Red

 

Could you please let me know how I can get green color with value as 0 when there is 'no results found' 

Labels (1)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Try something like this

| appendpipe [| stats count as "Total impact %"| where 'Total impact %'=0]
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @anil1219 ,

there a request in Splunk ideas to add a feature to do this, please upvote it!

Anyway, using the solution you shared you should have 0 instead of "no results found".

For the green colour, in the classical interface dashboards (I'm not srìtill using Dashboard Studio) you should click on the pencil button in the panel of your dashboard.

Then you can choose the colour and set the range for your colours.

Ciao.

Giuseppe

0 Karma

anil1219
Engager
 
0 Karma
Get Updates on the Splunk Community!

What's New in Splunk Enterprise 9.4: Features to Power Your Digital Resilience

Hey Splunky People! We are excited to share the latest updates in Splunk Enterprise 9.4. In this release we ...

Take Your Breath Away with Splunk Risk-Based Alerting (RBA)

WATCH NOW!The Splunk Guide to Risk-Based Alerting is here to empower your SOC like never before. Join Haylee ...

SignalFlow: What? Why? How?

What is SignalFlow? Splunk Observability Cloud’s analytics engine, SignalFlow, opens up a world of in-depth ...