Splunk Search

Does anybody have any idea how to make values appear in a line chart while hovering on it?

manijain
New Member

For example i have the below search

eval Time_To_Map=strftime(strptime(STATUS_TIME,"%Y-%m-%d-%H.%M.%S.%3N"),"%H.%M") | stats values(Time_To_Map) as TME by COB_DATE,VSNAME,SLICEKEY 

Now, I want a chart that has X axis as COB_DATE and Y axis as TME , and as I hover through the chart, the value of VSNAME,SLICEKEY should appear

Values for COB_DATE are YYYYMMDD
Values of TME are HH.MM
Values of VSNAME,SLICEKEY are strings

0 Karma

niketn
Legend

@manijain you would need Simple XML JS extension (possibly CSS extension as well) to do this. Refer to @jeffland 's solution: https://answers.splunk.com/answers/337329/is-it-possible-to-show-a-custom-tooltip-whenever-a.html

____________________________________________
| makeresults | eval message= "Happy Splunking!!!"
0 Karma
Get Updates on the Splunk Community!

Observe and Secure All Apps with Splunk

  Join Us for Our Next Tech Talk: Observe and Secure All Apps with SplunkAs organizations continue to innovate ...

Splunk Decoded: Business Transactions vs Business IQ

It’s the morning of Black Friday, and your e-commerce site is handling 10x normal traffic. Orders are flowing, ...

Fastest way to demo Observability

I’ve been having a lot of fun learning about Kubernetes and Observability. I set myself an interesting ...