I could then populate a dropdown list with indices :)
Somehow I could not get this done, would be cool if somebody could help me :)
I would prefer some in-splunk possibilities compared to file-parsing or CLI foo btw out of obv. reasons.
asked 26 Jan '12, 05:04
The most efficient way to get accurate results is probably:
Just searching for
Corrected to include
Have you had a look at the UI Examples app? Splunk UI examples app for 4.1+ on Splunkbase
That has some good drop down search examples, so you could just build a drop down form dashboard where the drop down is populated with the results of something like index=* and choose the index fields to get the data.
answered 26 Jan '12, 05:19
is it possible to exclude some indexes of the list
answered 04 Oct '12, 07:23