Splunk Search

passing a variable/token through link search

smolcj
Builder

hi,
i have a simple xml form with a dropdown box and several single value panels. how can i pass the token from dropdown box through link search something like
index=main source=$sources$ sourcetype=plog |transaction startswith="Start"
i tried replacing $sources$ with form.source row.source.. but it is not working fine.
please help
Thank you

Tags (1)

Leo
Splunk Employee
Splunk Employee

Try this example and see if it helps with your situation.

smolcj
Builder

Sorry Leo, that is not what i want, here in your single value panel you have a field called count, is it? i want to drill down by clicking to that count field. how to embed the drill down in table to this single value output. i heard from nick that dirill down in single value panel cannot be dynamic, so i am thinking of closing this question
Thank you

0 Karma

Leo
Splunk Employee
Splunk Employee

It should work the same way. I've added a single value field to the previous example:
http://pastebin.com/BmW96WmQ

0 Karma

smolcj
Builder

how can i do it with single value panel? link search option in single value panel behaves like static

0 Karma
Get Updates on the Splunk Community!

Now Available: Cisco Talos Threat Intelligence Integrations for Splunk Security Cloud ...

At .conf24, we shared that we were in the process of integrating Cisco Talos threat intelligence into Splunk ...

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Easily Improve Agent Saturation with the Splunk Add-on for OpenTelemetry Collector

Agent Saturation What and Whys In application performance monitoring, saturation is defined as the total load ...