Dashboards & Visualizations

search button in Splunk 6 form is not working

las
Contributor

Hi.

I have a form, with an entry field, and a timepicker in simple XML.
If for some reason, I want to do the search again, without changing either the input field, nor the time, the search button is inactive, and pressing it, does not perform the search again.

The for is as follows:


<!-- define master search template, with replacement tokens delimited with $. This is an example, replace with your own search.-->


<!-- the default is a text box, with no seed value; if user does not input
a value, then the $from$ token in searchTemplate will be removed -->

*


Last 24 hours


<!-- output the results as a 50 row events view -->


index=tws_jobhistorik sourcetype="TWS_event_log" (eventNumber=101 OR eventNumber=102 OR eventNumber=104 OR eventNumber=107 OR eventNumber=111 OR eventNumber=115 OR eventNumber=123 OR eventNumber=151 OR eventNumber=154 OR eventNumber=157) submitName=$job$ | dedup _raw | sort -_time, sourcetype | table _time jobStreamID jobStatus submitName eventText returncode
Results
true
50


/app/TWS_eventviewer/show_jobhistorik?form.jobStreamID=$row.jobStreamID$&form.jobStatus=$row.jobStatus$&form.submitName=$row.submitName$&earliest=$earliest$&latest=$latest$




Anybody have a clue, as to why?

Thanks in advance.

Kind regards las

Tags (2)
1 Solution

las
Contributor

The search button workd, when the criteria is changed, if it is just a refresh, there is a special refresh button, somewhere on the form.

View solution in original post

0 Karma

las
Contributor

The search button workd, when the criteria is changed, if it is just a refresh, there is a special refresh button, somewhere on the form.

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Can’t Make It to Boston? Stream .conf25 and Learn with Haya Husain

Boston may be buzzing this September with Splunk University and .conf25, but you don’t have to pack a bag to ...

Splunk Lantern’s Guide to The Most Popular .conf25 Sessions

Splunk Lantern is a Splunk customer success center that provides advice from Splunk experts on valuable data ...

Unlock What’s Next: The Splunk Cloud Platform at .conf25

In just a few days, Boston will be buzzing as the Splunk team and thousands of community members come together ...