Splunk Search

How to set search sorting supersedes the table sorting?

rajyah
Communicator

Let's say I've already specified my filters and submitted my search with "sort" command in it.

My search sorts the results according to date but then I decided to sort the table by amount field by clicking the header. Then I changed my search's date filter to another date and clicked submit.

Please take note that my search has "sort" command in it, why does my table still sort according to amount?

Do I need a JS to handle this? I wish the result would sort according to date but it seems the previous sort(amount) supersedes the sorting of my search.

Please enlighten me on this one. Thank you.

Regards,
Raj

Tags (3)
0 Karma

sandeepmakkena
Contributor

I think this is something related to Splunk version Or the browser you are using if you can try using a different browser. You can also try running your search in developer mode.

Hope this helps, Thanks!

0 Karma

maciep
Champion

That seems a little buggy I think. What version of Splunk? Have you tried multiple browsers?

I have 7.1 installed on my laptop and couldn't reproduce in chrome with a simple search of _internal.

0 Karma
Got questions? Get answers!

Join the Splunk Community Slack to learn, troubleshoot, and make connections with fellow Splunk practitioners in real time!

Meet up IRL or virtually!

Join Splunk User Groups to connect and learn in-person by region or remotely by topic or industry.

Get Updates on the Splunk Community!

Best Practices: Splunk auto adjust pipeline queue

When you enable autoAdjustQueue in Splunk, maxSize should be understood as the queue size Splunk starts with ...

Introducing the 2026 - 2027 SplunkTrust cohort!

The goal of the SplunkTrust™ membership has historically been to acknowledge and recognize those who go above ...

Splunk Auto Ingestion Parallel Pipeline Scaling

Why this feature matters Many Splunk environments experience ingestion pressure long before the host is fully ...