Splunk® Enterprise

Developing Dashboards, Views, and Apps for Splunk Web

Download manual as PDF

Splunk version 4.x reached its End of Life on October 1, 2013. Please see the migration information.
This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Download topic as PDF

Add an event listing

An event visualization is essentially a raw list of events. You can get event visualizations from any search that does not include a transform operation. Transform operations use reporting commands such as stats, chart, timechart, top, or rare.

Configure the event listing panel

The following example displays access errors as a list of events. The search for the panel is from a saved search.

This panel specifies the following:

  • Display 15 rows of returned data
  • Do not include the row numbers
  • Include a maximum of 10 lines of data for each event
  • Wrap long lines of returned data
  <label>Event Listing Dashboard</label>
      <searchName>Errors in the last 24 hours</searchName>
      <title>Errors in the last 24 hours</title>
      <option name="count">15</option>
      <option name="displayRowNumbers">false</option>
      <option name="maxLines">10</option>
      <option name="softWrap">true</option>

Configure event listing specific options

For basic configuration of event listings, refer to the "Event panel entry" in the Panel reference for Simplified XML.

Add a single value and gauges
Build a real-time dashboard

This documentation applies to the following versions of Splunk® Enterprise: 4.3, 4.3.1, 4.3.2, 4.3.3, 4.3.4, 4.3.5, 4.3.6, 4.3.7

Was this documentation topic helpful?

Enter your email address, and someone from the documentation team will respond to you:

Please provide your comments here. Ask a question or make a suggestion.

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters