Hello All,
I am wondering if anyone knows if Splunk, or a splunk app can accomplish customizing your table.
For example a search like this: * | table host, source, sourcetype
I would like to be able to interactively move the columns via mouse drag(I know you can specify the order with the table command by what field is typed in first, but interactively as an alternative)
In addition, I would like to be able to collapse my columns/rows and bring them back up interactively.
Does anyone know if this is a possibility either via "out-of-the-box" Splunk or via an app?
Thank you!
This currently not available in Splunk or in any app, that I know of. The feature(s) similar to what you discribe will be available in Bubbles the next major 5.x release. Keep in mind that Ace (5.0) release has not been released.
Hello bmacias, Thank you for your response. I assume Bubbles and Ace refer to the code names for the releases. Could you point me of where you found this information? I seem to be unable to find it on the webpage. Thank you again for your time.
This currently not available in Splunk or in any app, that I know of. The feature(s) similar to what you discribe will be available in Bubbles the next major 5.x release. Keep in mind that Ace (5.0) release has not been released.
@bmacias84, Thank you I appreciate all your help.
@nowakdaw, I haven't seen any public information regarding this since 5.0 (ACE) has not been released yet. Bubbles will be a 5.x release and has nt release date. The only reason I am event aware of this is because I attended Splunk .conf 2012 and I've been in contact with the Seattle Branch. My co-work was able to particpate in a user experiance show this feature. Sorry I could be of more help.