Splunk Search

What is an inline Search, How to create one, Impact of using it, Any Splunk documentation for inline search.

gagandeep_arora
Path Finder

What is an inline Search, How to create one, Impact of using it, Any Splunk documentation for inline search.

Tags (1)
0 Karma
1 Solution

woodcock
Esteemed Legend

The term inline search only has context with dashboard XML code. It means that instead of referencing a saved search with search ref you imbed the SPL search string directly inside of the XML. The best documentation on this is here:
http://docs.splunk.com/Documentation/Splunk/latest/Viz/Savedsearches

View solution in original post

gagandeep_arora
Path Finder

Thanks Woodcock, I got much clarity from the article.

The search query you shared in the other post is listing all the inline searches executed within a SH Cluster :
https://answers.splunk.com/answers/551415/identify-which-dashboards-are-using-inline-searche.html

It is giving me 2300 search results for inline searches, its just excluding 6 searches may be those were referred as saved searches.

0 Karma

woodcock
Esteemed Legend

The term inline search only has context with dashboard XML code. It means that instead of referencing a saved search with search ref you imbed the SPL search string directly inside of the XML. The best documentation on this is here:
http://docs.splunk.com/Documentation/Splunk/latest/Viz/Savedsearches

gagandeep_arora
Path Finder

Thanks, It's a useful link.

0 Karma

valerie_tan
Path Finder

Hi woodcock, may I know if it is possible to refresh the inline search from the original data source with a click? Does the auto-refresh interval setting actually work on this Inline Search?
Thank you

0 Karma
Get Updates on the Splunk Community!

Accelerating Observability as Code with the Splunk AI Assistant

We’ve seen in previous posts what Observability as Code (OaC) is and how it’s now essential for managing ...

Integrating Splunk Search API and Quarto to Create Reproducible Investigation ...

 Splunk is More Than Just the Web Console For Digital Forensics and Incident Response (DFIR) practitioners, ...

Congratulations to the 2025-2026 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...