Dashboards & Visualizations

search button in Splunk 6 form is not working

las
Contributor

Hi.

I have a form, with an entry field, and a timepicker in simple XML.
If for some reason, I want to do the search again, without changing either the input field, nor the time, the search button is inactive, and pressing it, does not perform the search again.

The for is as follows:


<!-- define master search template, with replacement tokens delimited with $. This is an example, replace with your own search.-->


<!-- the default is a text box, with no seed value; if user does not input
a value, then the $from$ token in searchTemplate will be removed -->

*


Last 24 hours


<!-- output the results as a 50 row events view -->


index=tws_jobhistorik sourcetype="TWS_event_log" (eventNumber=101 OR eventNumber=102 OR eventNumber=104 OR eventNumber=107 OR eventNumber=111 OR eventNumber=115 OR eventNumber=123 OR eventNumber=151 OR eventNumber=154 OR eventNumber=157) submitName=$job$ | dedup _raw | sort -_time, sourcetype | table _time jobStreamID jobStatus submitName eventText returncode
Results
true
50


/app/TWS_eventviewer/show_jobhistorik?form.jobStreamID=$row.jobStreamID$&form.jobStatus=$row.jobStatus$&form.submitName=$row.submitName$&earliest=$earliest$&latest=$latest$




Anybody have a clue, as to why?

Thanks in advance.

Kind regards las

Tags (2)
1 Solution

las
Contributor

The search button workd, when the criteria is changed, if it is just a refresh, there is a special refresh button, somewhere on the form.

View solution in original post

0 Karma

las
Contributor

The search button workd, when the criteria is changed, if it is just a refresh, there is a special refresh button, somewhere on the form.

0 Karma
Get Updates on the Splunk Community!

Extending Observability Content to Splunk Cloud

Register to join us !   In this Extending Observability Content to Splunk Cloud Tech Talk, you'll see how to ...

What's new in Splunk Cloud Platform 9.1.2312?

Hi Splunky people! We are excited to share the newest updates in Splunk Cloud Platform 9.1.2312! Analysts can ...

What’s New in Splunk Security Essentials 3.8.0?

Splunk Security Essentials (SSE) is an app that can amplify the power of your existing Splunk Cloud Platform, ...