Splunk Dev

How do i set initial time to date time picker from search event

nikkkc
Path Finder

Hi there,
Can someone help me to set a default time on a timepicker (dashboard view) from an search result?
Like it is possible in dropdown...

Or is it possible to set the time on a timepicker dynamically from dropdown value? I would like to give the user the oportunity to preselect the available dates before i fill up the dashboard view.
Thanks in advance
cheers Nik

Tags (1)
0 Karma

niketn
Legend

Can you please clarify timepicker (dashboard view) from an search result?
Are you trying to link two dashboards together through a drilldown? For example Search running in Dashboard 1 should drilldown to Dashboard 2 using drilldown when user clicks on either a table row or chart?

____________________________________________
| makeresults | eval message= "Happy Splunking!!!"
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi nikkkc,
You can pre select some dates related to roles so users can find them in the top part of the Time Picker.
To do this go in [Settings -- User Interface -- Time defaults]
Bye.
Giuseppe

0 Karma

nikkkc
Path Finder

Hi,
Thanks for your reply but time zone is not what i need. i have some indexed data on different days and a user should able to select data from 20170703 or from 20170625 and so on....

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi nikkkc,
Sorry, I wasn't so clear!
I'm not speaking about time zones, it's possible to set some defaults for "Time ranges" that are displayed in the Presets of the Time picker.

To do this go in [Settings -- User Interface -- Time Ranges] and set e.g.:

  • two days ago earliest -2d@d latest -d@d
  • three days ago earliest -3d@d latest -2d@d
  • ...

I's also possible (but not so easy) replace Time picker with a dropdown list of dates extracted from your logs or from a lookup.

Bye.
Giuseppe

0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.

Can’t make it to .conf25? Join us online!

Get Updates on the Splunk Community!

Take Action Automatically on Splunk Alerts with Red Hat Ansible Automation Platform

 Are you ready to revolutionize your IT operations? As digital transformation accelerates, the demand for ...

Calling All Security Pros: Ready to Race Through Boston?

Hey Splunkers, .conf25 is heading to Boston and we’re kicking things off with something bold, competitive, and ...

Beyond Detection: How Splunk and Cisco Integrated Security Platforms Transform ...

Financial services organizations face an impossible equation: maintain 99.9% uptime for mission-critical ...