Splunk Search

How to generate several "chart / over / by" charts for each value X using trellis?

alissonpdc
New Member

Hello Splunk Community,

I'm trying to build a dashboard that dynamically displays several bar charts based on each value of "Origem".

Values: Origem, SentidoCanal, Metrica, Valor
Chart should looks like:
1) A bar chart, using trellis, for each Origem;
2) SentidoCanal as X-axis, Metrica as different bars per SentidoCanal, Valor as Y-axis;

index="raw_switch" Diagnostics (Metrica=Drop OR Metrica=Loss OR Metrica=MaxJitter)
| chart max(Valor) over SentidoCanal by Metrica

I've done the dashboard for each Origem statically, but it's impossible to scale this way. That's why I need to use trellis.

I appreciate any help!

Thanks.alt text

0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk, and empower your SOC to reach new heights! Duration: 1 hour  Prepare to ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...