Splunk Search

Expand button in tables

makstra
New Member

Hi all,

I tried finding my answer in the existing topics, but I couldn't find it. So I created my own topic.
Maybe it's not how Splunk is designed, but I'm trying to add the expand button, which is available in the event viewer, to my tabled report.

For clarification, the column with the i in the header with the arrows to expand an event:
Is it possible to add that column when creating a table?
alt text

Thanks for your answers in advance!

0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi makstra,
I don't know it it's exactly what you want, because it's a just rigid feature, but in the Splunk Dashboard Examples App (see at https://splunkbase.splunk.com/app/1603/ ), there's an example that could help you: Table Row Expansion.

Bye.
Giuseppe

0 Karma
Get Updates on the Splunk Community!

Introducing the Splunk Community Dashboard Challenge!

Welcome to Splunk Community Dashboard Challenge! This is your chance to showcase your skills in creating ...

Built-in Service Level Objectives Management to Bridge the Gap Between Service & ...

Wednesday, May 29, 2024  |  11AM PST / 2PM ESTRegister now and join us to learn more about how you can ...

Get Your Exclusive Splunk Certified Cybersecurity Defense Engineer Certification at ...

We’re excited to announce a new Splunk certification exam being released at .conf24! If you’re headed to Vegas ...