I am using following query to get my results in tabular format:
source="/splunkInput/MARTINI/EMLC/*" E2E_ID="sampleid" | transaction E2E_ID, tier | chart avg(duration) by E2E_ID,tier
which gives me results in a tabular format with E2E_ID and also for different tiers.
Now i want to create a form search for which takes E2E_ID as input and gives results in table with values E2E_ID and different tiers.
COuld anyone help me on this..?
Did you create a search form and encountered problems with this, or do you simply not know how to create search forms and want us to create the whole search form for you?