Splunk Search

Pattern search through the delivered list in dashboard panel

damucka
Builder

Hello,

I was wondering if it is possible to have kind of search through the delivered results in the dashboard panel.
My case is that I want to list the source files (logfiles/crashdump files) in one of the panels. The coresponding search is:

| metadata type=sources index=mlbso | rename totalCount as Count firstTime as "First Event" lastTime as "Last Event" recentTime as "Last Update" | fieldformat Count=tostring(Count, "commas") | fieldformat "First Event"=strftime('First Event', "%c") | fieldformat "Last Event"=strftime('Last Event', "%c") | fieldformat "Last Update"=strftime('Last Update', "%c") | search source="*BWP*crashdump*" |  sort - "Last Update" | fields "source" "Count"

But then the result list is quite long and I would like to give the users the opportunity to quick search through the list giving in the pattern / part of the delivered filename. Like a google like search through the list.
Is it possible?

Kind Regards,
Kamil

Tags (1)
0 Karma
Get Updates on the Splunk Community!

Observability Highlights | January 2023 Newsletter

 January 2023New Product Releases Splunk Network Explorer for Infrastructure MonitoringSplunk unveils Network ...

Security Highlights | January 2023 Newsletter

January 2023 Splunk Security Essentials (SSE) 3.7.0 ReleaseThe free Splunk Security Essentials (SSE) 3.7.0 app ...

Platform Highlights | January 2023 Newsletter

 January 2023Peace on Earth and Peace of Mind With Business ResilienceAll organizations can start the new year ...