Splunk Dashboard Time Picker

navigative
Aug 25, 2017 · 1 min read

Edit Dashboard using Period to search must be setup token into panel by Dashboard source XML

Create new item “Time”

Token of time is “time_tok1

In searchString TAG

<searchString>
<earliestTime>$time_tok1.earliest$</earliestTime>
<latestTime>$time_tok1.latest$</latestTime>
</searchString>

OR

In search TAG

<search>
<earliest>$time_tok1.earliest$</earliest>
<latest>$time_tok1.latest$</latest>
</search>
)
Welcome to a place where words matter. On Medium, smart voices and original ideas take center stage - with no ads in sight. Watch
Follow all the topics you care about, and we’ll deliver the best stories for you to your homepage and inbox. Explore
Get unlimited access to the best stories on Medium — and support writers while you’re at it. Just $5/month. Upgrade