Splunk Search

How to add a toggle to hide/unhide fields in a table in Splunk Dashboard?

PotatoDataUser
Explorer

I am working on a dashboard that has a bunch of field and will be used by multiple teams and people who will be needing different fields from the table. 
Is there anyway to add a toggle or filter or anything similar to give a couple of presets (ex fields A D E H to preset 1 for team 1, fields B C D F G to preset 2 for team 2 and so on)
I also use filters on fields in the dashboard table as well if possible i would want hiding of the field to not impact the filters at all. 

Thanks in advance.

Labels (1)
Tags (1)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

You could design an input which sets the fields a particular team needs and use that token in a table command alongside the fields which are common to all teams

| table _time comoon1 common2 $teamfields$
Get Updates on the Splunk Community!

Dashboards: Hiding charts while search is being executed and other uses for tokens

There are a couple of features of SimpleXML / Classic dashboards that can be used to enhance the user ...

Splunk Observability Cloud's AI Assistant in Action Series: Explaining Metrics and ...

This is the fourth post in the Splunk Observability Cloud’s AI Assistant in Action series that digs into how ...

Brains, Bytes, and Boston: Learn from the Best at .conf25

When you think of Boston, you might picture colonial charm, world-class universities, or even the crack of a ...