Im trying to make apunchcard to visualize incoming issues per hour in the prvious week. This is the result i get with the following code:
| eval issues="Issue P...
Hello, I have create acustom role and assigned the same permissions as ess_user, including adding it to the enforce_es_permissions setting. But for whatever reason the user doesn't see a...
I've got the new custom visualization Punchcard displayed just the way I want it to, but I can't seem to set a token when I click on a circle. For example, assume I have a query such as
... | t...
I think Splunk doesn't have a built-in/defined sourcetype for ExtremeCloud XIQ logs. Can we define acustom sourcetype, like `extremecloud:xiq`, in the syslog server(splunk_metadata.csv)? If so, h...
I am developing acustom streaming command. During tests and debugging I noticed the command works fine in this search: index="_internal" | head 1 | table host | customcommand and produces the f...
We are using Splunk Enterprise 6.4.3 with PunchcardCustom Visualization 1.0.0.
User role with Read Only access are getting "No matching visualization found for type: punchcard, in app punchcard...
Hi, i am trying to use custom javascript file to customize some button actions in my dashboard, but it doesn't work and i don't know why. I'm using the last version of Splunk enterprise My custom s...
I would like to add a column called Management to my table. The management value is not part of the event data. It is something I would like to assign based on the value of A...
...ogs defined in SplunkUniversalForwarder\local\inputs.conf using Deployment Server? Is there a way to make my customapp take precedence, or do I need to remove/modify that file manually? (I am doing i...
...rror_Code count 200 20 500 100 400 40 505 45 500 32 Instead of Errorcodes we want to display acustom text as shown below. How can we do this?? Expected output: E...