When you print the summary of an investigation through ES it does not include notes. Is there a way to add those? Alternatively is there a way touse SPL to find those notes, a...
In order to visual a data table with 4 columns: time, resource1, resource2, duration. I know who to do this with data coming from different events. However in my case, all the data is s...
Hi,
I need tousetheEventTimeline Viz to show a timeline of thethe different URLs been hit over time. This is the first time I used this visualization and I am struggling. At the m...
...reate release timeline (eventtimeline viz) like this: https://cdn.apps.splunk.com/media/public/screenshots/25938208-2138-11e9-9f51-0a7dd926fc04.png CUS= means customers (need to show in l...
...30 minutes worth of logs before the crash.
In other tools I've used (Graphite, and New Relic) you can send special events for a code deploy and then those will be displayed in the graphs as a v...
I understand we can usethe following to look at theinvestigations created which are 'Active'.
|inputlookup append=t investigative_canvas_lookup
|inputlookup append=t investig...
Hi,
I’m using theEventTimeline viz to create a timeline. The visualisation works when its a single panel in a dashboard. However, I need this timeline visualisation to work in a dashboard with a...