Splunk Search

How to change a search query in the Splunk Insights for Infrastructure?

kvaga
Explorer

Currently I have incoming events (from logs). The predefined charts look like histogram of count of events for a specific period. How can I change conditions of search query?

1 Solution

pwu_splunk
Splunk Employee
Splunk Employee

You can change the time-picker in the upper-left corner to change the time range. You can change some parameters of the histogram with the side panel on the right. Outside of that, SII doesn't have further graph customization at this time.

To expand events and explore the log data, click on the button in the upper-right corner.

alt text

View solution in original post

pwu_splunk
Splunk Employee
Splunk Employee

You can change the time-picker in the upper-left corner to change the time range. You can change some parameters of the histogram with the side panel on the right. Outside of that, SII doesn't have further graph customization at this time.

To expand events and explore the log data, click on the button in the upper-right corner.

alt text

kvaga
Explorer

Ok
Thanks
I'll be waiting for the further customizations in the new versions of SII. It would be a usefull feature to create own charts

0 Karma

ntankersley_spl
Splunk Employee
Splunk Employee

What kind of charts are you looking to create? Do you want general access to the SPL query language for customization or would you like this to be a part of the UI?

0 Karma
Get Updates on the Splunk Community!

Optimize Cloud Monitoring

  TECH TALKS Optimize Cloud Monitoring Tuesday, August 13, 2024  |  11:00AM–12:00PM PST   Register to ...

What's New in Splunk Cloud Platform 9.2.2403?

Hi Splunky people! We are excited to share the newest updates in Splunk Cloud Platform 9.2.2403! Analysts can ...

Stay Connected: Your Guide to July and August Tech Talks, Office Hours, and Webinars!

Dive into our sizzling summer lineup for July and August Community Office Hours and Tech Talks. Scroll down to ...