Splunk Search

How to create dynamic inputs using lookup

elrich11
Explorer

I have a dashboard that shows 3 priorities/3panels -Critical, high, low.
the dropdown Input is hardcoded using certain combinations of source name and message, that helps me bifurcate the data into 3 panels,
Now the requirement is that Users could select the SourceName from my last Panel(Other Panel) whenever they want to prioritize any SourceName and add it to any of the 3 panels i.e either Critical,High or Low.

Is there any simple way to achieve this?

Currently, I'm trying to use a csv lookup to get this done But, I'm stuck as there could be 1 source name with different message and both having different priority

For Example:

SrcName Message Priority
ABC Message 1 Critical
ABC Message 2 low

Tags (2)
0 Karma
Get Updates on the Splunk Community!

Federated Search for Amazon S3 | Key Use Cases to Streamline Compliance Workflows

Modern business operations are supported by data compliance. As regulations evolve, organizations must ...

New Dates, New City: Save the Date for .conf25!

Wake up, babe! New .conf25 dates AND location just dropped!! That's right, this year, .conf25 is taking place ...

Introduction to Splunk Observability Cloud - Building a Resilient Hybrid Cloud

Introduction to Splunk Observability Cloud - Building a Resilient Hybrid Cloud  In today’s fast-paced digital ...