Dashboards & Visualizations

Drilldown of the values in table

splunkpoornima
Communicator

Hi all i have the below table .

TaskName count

Task1 12

Task2 1

Task3 34

the query used is source="aadd"|chart count by TaskName

i want to do drilldown for those values ..means if i click the Task1 i want to see the trend chart of that task over time

there any option to configure the XML in the dashboard

Tags (1)
0 Karma

sideview
SplunkTrust
SplunkTrust

Not with the Simple XML, no. But with the Advanced XML absolutely.

If you want to use just the core Splunk UI, I recommend downloading and installing the "UI Examples app for 4.1" app from Splunkbase, and reading through all of the documentation and example views in this section:

"Advanced XML > Drilldown Examples"

You can get the UI Examples app installed by either going to "Manager > Apps > Install app from file", or by going to http://splunk-base.splunk.com/apps/22333/splunk-ui-examples-app-for-41 and downloading the tar.gz file yourself and installing it manually on your Splunk instance.

And if you're already using Sideview Utils, (get latest 2.2.2 version for free from http://sideviewapps.com/apps/sideview-utils ), then drilldowns become a lot easier, primarily because you don't have to deal with intentions anymore. And Sideview Utils has it's own docs and example views showing you how to put together the XML ( See "Key Techniques > Inline Drilldown")

Get Updates on the Splunk Community!

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...

Detecting Remote Code Executions With the Splunk Threat Research Team

REGISTER NOWRemote code execution (RCE) vulnerabilities pose a significant risk to organizations. If ...