Reporting

Weekly comparison using Saved Reports in Dashboard

bhumikajpatel
Explorer

Hi,

I am trying to use Saved reports in my Splunk dashboard instead of inline searches...
I was able to use most recent report using |savedsearch = "searchname" in the query. But I need help to understand:

  1. How to run the query from history instead of the re-run of the searches.
  2. My report is executed every week and each execution has only one week worth of data. How to search based on all historic plus most recent reports in the dashboard. I need to do this for the week over week analysis.

thanks. Any help is highly appreciated!

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Fastest way to demo Observability

I’ve been having a lot of fun learning about Kubernetes and Observability. I set myself an interesting ...

September Community Champions: A Shoutout to Our Contributors!

As we close the books on another fantastic month, we want to take a moment to celebrate the people who are the ...

Splunk Decoded: Service Maps vs Service Analyzer Tree View vs Flow Maps

It’s Monday morning, and your phone is buzzing with alert escalations – your customer-facing portal is running ...