Dashboards & Visualizations

Create dashboard using advanced xml

namritha
Path Finder

Hi,

I have access to just splunk web, and can edit simple xml, but only view the code for advanced xml by appending 'dashboard_name/?showsource=advanced' at the end of the URL.

I have made some changes in the advanced xml and need to apply them to the dashboard.

I do not have access to the below directories, nor do I know where they are located.

$SPLUNK_HOME/etc/apps//local/data/ui/views/

$SPLUNK_HOME/etc/apps//default/data/ui/views/

Is there any way I will be able to save the changes I have made to the advanced xml?

Thanks in advance

0 Karma

ChrisG
Splunk Employee
Splunk Employee

If you are using Splunk Cloud, you won't be able to do that yourself. You could file a ticket and work with Support to get your changes in place. What are you trying to do that requires advanced XML instead of simple XML?

namritha
Path Finder

Thankyou for the response Chris.

I need to overlay two values in one chart with a common X axis and a Y axis on either side

chart 1 - Area chart: No. of requests per server (X axis - server, Y axis on left side - no. of requests)
chart 2 - Area chart : Average Response time per server (X axis - server, Y axis on right side - average response time)

Please refer to https://answers.splunk.com/answers/452756/why-is-my-chart-overlay-not-working.html to view the code I am using and detailed information.

In the link above, I have mentioned chart 2 as line chart, but my requirements have changed now and I need them both to be area charts.

0 Karma

somesoni2
Revered Legend

Which Splunk version you're working on? If Splunk 6.x, then do you see and Edit button (kinda dropdown) -> Edit source option on the top right corner of the dashboard?

namritha
Path Finder

Thankyou somesoni2. Edit source gives us the option to edit the simple xml, I need to edit the code for advanced xml as I have made changes to <modules>

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...