Splunk Search

Table as results of a search in forms



I am using following query to get my results in tabular format:

source="/splunkInput/MARTINI/EMLC/*" E2E_ID="sampleid" | transaction E2E_ID, tier | chart avg(duration) by E2E_ID,tier

which gives me results in a tabular format with E2E_ID and also for different tiers.

Now i want to create a form search for which takes E2E_ID as input and gives results in table with values E2E_ID and different tiers.

COuld anyone help me on this..?

Tags (4)
0 Karma
1 Solution


Did you create a search form and encountered problems with this, or do you simply not know how to create search forms and want us to create the whole search form for you?

0 Karma