Splunk Search

single search multiple table in splunk?

rsathish47
Contributor

Hi All,

Is that possible to view the result in multiple table for single search in Splunk not in dashboard?

Thanks
Sathish R

Tags (3)
0 Karma
1 Solution

Tanefo
Path Finder

hi, understant that you can't obtains the multiple table(i mind that you want said multiple result Views of your search) for single search, because your result search will always a single view of your results. but in dashboard you can manage it like you want(multiple panels, mutiple views of the same result search).,No you can't obtain the multtiple table for the result of your search , because always the result of you search will be single in your interface but in your dasboards you can manager it like you want..

View solution in original post

Tanefo
Path Finder

hi, understant that you can't obtains the multiple table(i mind that you want said multiple result Views of your search) for single search, because your result search will always a single view of your results. but in dashboard you can manage it like you want(multiple panels, mutiple views of the same result search).,No you can't obtain the multtiple table for the result of your search , because always the result of you search will be single in your interface but in your dasboards you can manager it like you want..

MoorthyRajendra
Engager

when we trigger an email through splunk we want to display 3 tables with different resultset. Is there any option to configure more than one splunk query to single email alert?

aweitzman
Motivator

I don't think I understand the question. Can you please describe in more detail:

  1. What you would like to do
  2. What you would like to see when you do it
  3. What you see instead when you do it now
Get Updates on the Splunk Community!

Webinar Recap | Revolutionizing IT Operations: The Transformative Power of AI and ML ...

The Transformative Power of AI and ML in Enhancing Observability   In the realm of IT operations, the ...

.conf24 | Registration Open!

Hello, hello! I come bearing good news: Registration for .conf24 is now open!   conf is Splunk’s rad annual ...

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...