Splunk Search

Replicate search chart on dashboard

BWRic
New Member

Hello,

How can I put the chart shown on my search results page into a dashboard widget?

I simply want to by able to plot the number of errors in the log file over time. Is there a way to make the graph a widget? Or what search / visualisation settings will I need to replicate it in a widget?

Thanks

Ric

The graph I want

0 Karma
1 Solution

sdaniels
Splunk Employee
Splunk Employee

Yes, just click on the 'Create' button under the time picker and choose Report. The report type with will 'Values over time' and the Fields will Show Number (count) of Events. That will give you the same view as results from searching. Once you save the report you can then add it to a dashboard.

This link in the docs will help you with Reporting and Dashboards - http://docs.splunk.com/Documentation/Splunk/latest/User/AboutReportsAndCharts

View solution in original post

sdaniels
Splunk Employee
Splunk Employee

Yes, just click on the 'Create' button under the time picker and choose Report. The report type with will 'Values over time' and the Fields will Show Number (count) of Events. That will give you the same view as results from searching. Once you save the report you can then add it to a dashboard.

This link in the docs will help you with Reporting and Dashboards - http://docs.splunk.com/Documentation/Splunk/latest/User/AboutReportsAndCharts

Get Updates on the Splunk Community!

Harnessing Splunk’s Federated Search for Amazon S3

Managing your data effectively often means balancing performance, costs, and compliance. Splunk’s Federated ...

Infographic provides the TL;DR for the 2024 Splunk Career Impact Report

We’ve been buzzing with excitement about the recent validation of Splunk Education! The 2024 Splunk Career ...

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...