Splunk Search

Multiple select for dynamic dashboards

xradim
Explorer

Hi,

I have prepared Dashboard using examples from Splunk web site and things work very well. In fact all examples I can see are limited to single value at the end.

What I am looking for is possibility to have multi select box where I can pick several generated values to get those generated in single graph.

The multiselect box something like first example in here http://www.htmlcodetutorial.com/forms/_SELECT_MULTIPLE.html

If I wan't to add another value into graph I do it these days using appendcol and this can be problem for dynamic searches. Maybe I am going just too far with this question, but does Splunk support such thing?

Thanks

Tags (1)

jpass
Contributor

I would also recommend using SideView Utils. The the latest version is available from Nick's website:

http://sideviewapps.com/apps/sideview-utils/

I've used the module for creating multi-selection dropdowns extensively and it's perfect for what you described.

Here's a related question I posted asking how to achieve the same thing with multiple checkboxes:

http://splunk-base.splunk.com/answers/75912/restrict-search-terms-conditionally-depending-on-the-ind...

Although, I believe my question is already outdated because the most recent version of sideview utils has new modules that handle this multiple check boxes.

0 Karma

hazekamp
Builder

Nick @ Sideview apps has put together some modules available on Splunkbase to do just this. The app contains modules as well as tutorials on how to implement. Check the app out here:

http://splunkbase.splunk.com/apps/All/4.x/app:Sideview+Utils

Get Updates on the Splunk Community!

Stay Connected: Your Guide to May Tech Talks, Office Hours, and Webinars!

Take a look below to explore our upcoming Community Office Hours, Tech Talks, and Webinars this month. This ...

They're back! Join the SplunkTrust and MVP at .conf24

With our highly anticipated annual conference, .conf, comes the fez-wearers you can trust! The SplunkTrust, as ...

Enterprise Security Content Update (ESCU) | New Releases

Last month, the Splunk Threat Research Team had two releases of new security content via the Enterprise ...