my dashboard is like this
it shows events so far
i want the dashboard should also show the
interesting fields
and selected fields
how can i do this?
A proper dashboard has a purpose of producing a very targeted window onto specific data. Duplicating all of splunk's native search screen functionality would require, in essence, all of splunk's native search screen code...
What are you trying to achieve with this particular dashboard? It looks like you are looking for specific kinds of errors, searching by host, within various development through production regions. (In my environment, those would be different hosts as well)
It might be better to start with identifying the most useful or commonly needed fields, and adding those to your dashboard, rather than cluttering it with everything possible. Use a click-through, or a second panel in the dash, to inspect any particular event further.
A proper dashboard has a purpose of producing a very targeted window onto specific data. Duplicating all of splunk's native search screen functionality would require, in essence, all of splunk's native search screen code...
What are you trying to achieve with this particular dashboard? It looks like you are looking for specific kinds of errors, searching by host, within various development through production regions. (In my environment, those would be different hosts as well)
It might be better to start with identifying the most useful or commonly needed fields, and adding those to your dashboard, rather than cluttering it with everything possible. Use a click-through, or a second panel in the dash, to inspect any particular event further.