Dashboards & Visualizations

Dynamic Dashboard

hartfoml
Motivator

I am monitoring the CPU use of the Splunk UF using WMI on my windows systems
I have this search;

source="WMI:LocalProcesses" Name=splunkd host="SYS20"| bucket _time span=1h | stats avg(PercentProcessorTime) AS "Average % CPU" by _time

this lets me see the Splunk UF CPU use over time for "sys20"

I can make this a dashboard without a problem.

My question is how do I make a dashboard with a pull-down list of "system names" and "Search time" so that I can make the dashboard available for system owners so they can see how much of the CPU resource Splunk is using on there system.

I have been using Splunk for 1 1/2 years and am at version 4.3 but I am not a developer.

Any help would be great.

Tags (1)
0 Karma

stjack99
Explorer

You need to make a form instead of a dashboard. Oddly enough, I've started building almost the exact form you are, except I ran into a problem using the radial gauge. You can borrow my code and use it as a template, I posted it here: http://splunk-base.splunk.com/answers/38610/radial-gauge-not-showing-in-form. All you need to do is add the time selection to the fieldset section, and of course, change the queries to match what you want.

Everything there works except for the gauge.

0 Karma

hartfoml
Motivator

Thanks I really appreciate the help

Now I need to read up on how to implement forms

I got you code. I'll let you know if I can figure out how to implement it.

Mike H.

0 Karma
Get Updates on the Splunk Community!

ICYMI - Check out the latest releases of Splunk Edge Processor

Splunk is pleased to announce the latest enhancements to Splunk Edge Processor.  HEC Receiver authorization ...

Introducing the 2024 SplunkTrust!

Hello, Splunk Community! We are beyond thrilled to announce our newest group of SplunkTrust members!  The ...

Introducing the 2024 Splunk MVPs!

We are excited to announce the 2024 cohort of the Splunk MVP program. Splunk MVPs are passionate members of ...