Dashboards & Visualizations

Why create a dashboard vs a view?

caffein
Path Finder

I'm trying to figure out why anyone would want to create a dashboard in Splunk. Views allow you to add forms along with any charts and searches, while dashboards only show static charts. So, why would I want to make a dashboard? Is there any advantage of one vs the other?

Tags (2)
1 Solution

sdaniels
Splunk Employee
Splunk Employee

Dashboards are views. You'll see that when you go into Manager -> User Interface -> Views. In Splunk you can create Dashboards, Reports and Alerts. Reports can be static and delivered in the typical fashion or, one or more searches can be put on a dashboard for real time of historical data. Am I missing something in your question?

View solution in original post

sdaniels
Splunk Employee
Splunk Employee

Dashboards are views. You'll see that when you go into Manager -> User Interface -> Views. In Splunk you can create Dashboards, Reports and Alerts. Reports can be static and delivered in the typical fashion or, one or more searches can be put on a dashboard for real time of historical data. Am I missing something in your question?

caffein
Path Finder

Ok, that makes since. Thanks.

0 Karma

sdaniels
Splunk Employee
Splunk Employee

So any one of the screens that you navigate to are really Views. A Dashboard, a Form search and Advanced XML page are all views. But we might not consider a basic form page, where you do some searching, a dashboard. Just in terms of what you call it. Make sense?

araitz
Splunk Employee
Splunk Employee

It is a bit confusing. Views are any page in Splunk Web. Dashboards are a type of view (think of the main page in the search app) which are generally layed out in given manner. Another type of view is a search view (think of the flashtimeline view).

caffein
Path Finder

I guess what confuses me is that, if you go to the home screen, there is a Dashboards dropdown and a Views dropdown. So, I'm trying to figure out what the difference between the two is and why I would choose to use one over the other.

Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...