Splunk Search

Adding Checkboxes in a dashboard (similar to ES Incident Review)



has anyone implemented a simple xml dashboard that shows a table with checkboxes? I would like to update a lokup/kv store with information of the result rows for the selected rows. ES has this feature in the incident review dashboard:

alt text

The "Edit Selected" OR "Edit All x Matching Events" should then update the lookup. My programming skills are limited, I'd be gratefull for an example that I can modify/adapt to my needs.


Tags (1)
Get Updates on the Splunk Community!

Detecting Remote Code Executions With the Splunk Threat Research Team

WATCH NOWRemote code execution (RCE) vulnerabilities pose a significant risk to organizations. If exploited, ...

Enter the Splunk Community Dashboard Challenge for Your Chance to Win!

The Splunk Community Dashboard Challenge is underway! This is your chance to showcase your skills in creating ...

.conf24 | Session Scheduler is Live!!

.conf24 is happening June 11 - 14 in Las Vegas, and we are thrilled to announce that the conference catalog ...