- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Why is chain search not inheriting value from time range token?
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
I can confirm this is still on issue.
Version:9.0.2303.202
Build:06d6be78fc0e
Setting the Base Search to use the global time selector's token and verifying the chain searches are using the same token is not sufficient in getting the time selector to update the panels. they just stay frozen when changing the time selector. Dashboards cannot be optimized properly if we cannot use base searches.
i cannot take over the world with this bug in place.
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Experiencing the same issue on Splunk Enterprise 9.0.0 with the "Open in Search" for panels using chain searches.
Changing the time input seems to work fine for panels using chain searches, though.
- Mark as New
- Bookmark Message
- Subscribe to Message
- Mute Message
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
We also stumbled across this bug in Splunk Enterprise 9.0.2.
Has anyone found a solution yet or opened a case for this?
