Splunk Enterprise

How to highlight/outline table rows based on string value of a certain column without JS?

buttsurfer
Path Finder

 

I have the table below and want to reflect the severity of the duration metric by highlighting the entire row

index=...
| eval epochtime = strptime(startTime,"%a %m/%d %H:%M %Y")
| eval start = strftime(epochtime,"%a %d/%m/%Y %H:%M")
| eval duration = tostring(round(now()-epochtime), "duration")
| table time user client start duration 

 

Is it possible to highlight or outline the entire row in red if the duration > 08:00

Labels (2)
0 Karma
1 Solution

ITWhisperer
SplunkTrust
SplunkTrust

If your dashboard is SimpleXML, you can use CSS - you need to make your fields multi-value fields and use CSS to hide the additional elements.

See this post for an example Re: How to change table cell background color depe... - Splunk Community

View solution in original post

ITWhisperer
SplunkTrust
SplunkTrust

If your dashboard is SimpleXML, you can use CSS - you need to make your fields multi-value fields and use CSS to hide the additional elements.

See this post for an example Re: How to change table cell background color depe... - Splunk Community

Get Updates on the Splunk Community!

Splunk Observability Cloud | Customer Survey!

If you use Splunk Observability Cloud, we invite you to share your valuable insights with us through a brief ...

Happy CX Day, Splunk Community!

Happy CX Day, Splunk Community! CX stands for Customer Experience, and today, October 3rd, is CX Day — a ...

.conf23 | Get Your Cybersecurity Defense Analyst Certification in Vegas

We’re excited to announce a new Splunk certification exam being released at .conf23! If you’re going to Las ...