Dashboards & Visualizations

how to make an empty line chart if no result is found?

logloganathan
Motivator

How to make an empty line chart if no result is present in the dashboard?

It's simply displaying no result.

1 Solution

niketn
Legend

@logloganathan, get the Splunk Dashboard Examples app which has Null Results Setter example to show custom message in case of No results. There are many more examples for you to learn and pick up for day to day scenarios.

Also refer to one of my recent answers to have empty timechart rather than showing No Results Found: https://answers.splunk.com/answers/595248/timechart-with-no-data-gives-no-results-found.html

____________________________________________
| makeresults | eval message= "Happy Splunking!!!"

View solution in original post

niketn
Legend

@logloganathan, get the Splunk Dashboard Examples app which has Null Results Setter example to show custom message in case of No results. There are many more examples for you to learn and pick up for day to day scenarios.

Also refer to one of my recent answers to have empty timechart rather than showing No Results Found: https://answers.splunk.com/answers/595248/timechart-with-no-data-gives-no-results-found.html

____________________________________________
| makeresults | eval message= "Happy Splunking!!!"

damiensurat
Contributor

It would help if you shared the context of your search. Lacking that, here's a tidbit of info to go on which may help point you in the right direction:

https://answers.splunk.com/answers/565395/how-to-return-0-when-the-search-has-no-results-in-1.html

0 Karma

logloganathan
Motivator

i am using stats command only but when no event present it return "no result"

0 Karma
Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...