Getting Data In

Cascading Form Input and Lookups for Conditional Populating of Dashboard Panels

kmasood
Explorer

Hello,

I have a 4 rows x 2 cols dashboard layout for various app platforms; each platform consists of two servers. The left column has panels for data from "Server1" and right column from "Server2."

Instead of creating 4 dashboards for each app platform, I'm looking to consolidate into one "view."

Ideally, it would function like this: Select from a drop down of apps. If app selected = HelloWorld, then the left column renders data for HelloWorldServer1, and right column for HelloWorldServer2; if app = GoodBye, then left column renders data from GoodByeServer1, right from GoodByeServer2. In some cases, the server names don't follow this neat pattern.

I think "Cascading Form Input Element" example Dashboard, and Lookups are the way to go, but I'm missing the glue to put them together … or they're not the right tools here. Any ideas?

Splunk 6.

Tags (2)
0 Karma

MuS
SplunkTrust
SplunkTrust

Hi kmasood,

take a look at the docs about Static and dynamic inputs to forms, there you will find an excellent example on how to build a dashboard doing what you are talking about.

hope this helps to get you started ...

cheers, MuS

Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Agent Mode Engaged! Enchaining Agentic Operations with Splunk AI Assistant 2.0

    Are you ready to transform how your team handles complex data requests? We invite you to our upcoming ...

Announcing Modern Navigation: A New Era of Splunk User Experience

We are excited to introduce the Modern Navigation feature in the Splunk Platform, available to both cloud and ...

Modernize your Splunk Apps – Introducing Python 3.13 in Splunk

We are excited to announce that the upcoming releases of Splunk Enterprise 10.2.x and Splunk Cloud Platform ...