All the Cisco Networks App for Splunk Enterprise dashboards are blank with the error "No Search Query Provided". The data from the syslog is present in the index and shows the sourcetype as cisco:ios. I can run manual searches and that displays the data in the index files. If I copy the search string from the XML source file and edit the dashboards, it picks the data from the index. Please provide a solution since I don't want to manually copy the search string for all the dashboards. I have tried deleting the apps from the server and reinstalling it. Splunk version is 6.1.1 and running on Windows server.
You will need Splunk 6.2+ or higher I believe due to new features in the search. Otherwise you may try an older version of the Cisco Networks App which uses the old functions to call searches from dashboards.