Splunk® Enterprise

Dashboards and Visualizations

Download manual as PDF

This documentation does not apply to the most recent version of Splunk. Click here for the latest version.
Download topic as PDF

Splunk Web Framework

The Splunk Web Framework provides various options for creating dashboards and forms. How you choose to develop dashboards depends on the data you want to present, the complexity you need to present the data, and your preferences for a development environment.

Simple XML

By default, Splunk creates dashboards using simple XML. You can create and modify simple XML dashboards using Splunk's interactive editing tools without writing any simple XML code. However, some dashboard features are only available by coding the source simple XML.

Highlights of Simple XML:

  • Create dashboards and forms with any number of panels that contain various visualizations of data.
  • Splunk Web has interactive editing tools for creating and modifying simple XML dashboards and panels.
  • Splunk provides an XML editor that you can use to edit the source code.
  • Drilldown capability is available for visualizations.
  • PDF generation is available in various forms for the dashboard

For more information:

Simple XML Extensions

New with Splunk 6, you can customize the layout of a dashboard, add new visualizations, and modify behavior of the dashboard while maintaining all the features available with Simple XML.

Highlights of Simple XML Extensions:

  • Accesses SplunkJS Stack
  • Custom CSS stylesheets and JavaScript files provide more flexibility for layout and styling.
  • Tokens are available for styling elements similarly across panels in a dashboard.
  • You can create custom visualizations to model your data.

For more information:

HTML accessing SplunkJS Stack

You can convert a simple XML dashboard to HTML that accesses features available from SplunkJS Stack, such as form inputs, tables, and charts. This gives you full layout control in a web developer environment that uses HTML and JavaScript.

Highlights of SplunkJS Stack

  • Full layout control
  • Web development environment that uses HTML plus JavaScript

For more information:

Django Bindings

Use Django Bindings to create fully custom dashboards that leverage Django's server-side capabilities, components, and templates. Advanced features of Django Bindings require familiarity with the Django Web Framework. It allows access to server-side functions not available with HTML and JavaScript and also allows for reusable components with Django tags.

Highlights of Django Bindings:

  • Django templates and template tags are a convenient way to create Splunk views and search managers.
  • Django Bindings provide advanced features for server-side development.

For more information:

Advanced XML and the Splunk module system

Splunk 6 continues support for legacy Splunk applications and dashboards created with advanced XML and the Splunk module system. Advanced XML provides configurable and reusable server side modules that you use to create advanced Splunk dashboards and applications.

Although Splunk continues support for advanced XML, Splunk encourages you to take advantage of the newer components of the Splunk Web Framework.

For more information:

PREVIOUS
Chart display issues
  NEXT
Dashboards and forms

This documentation applies to the following versions of Splunk® Enterprise: 6.1, 6.1.1, 6.1.2, 6.1.3, 6.1.4, 6.1.5, 6.1.6, 6.1.7, 6.1.8, 6.1.9, 6.1.10, 6.1.11, 6.1.12, 6.1.13, 6.2.0, 6.2.1, 6.2.2, 6.2.3, 6.2.4, 6.2.5, 6.2.6, 6.2.7, 6.2.8, 6.2.9, 6.2.10, 6.2.11, 6.2.12, 6.2.13, 6.2.14, 6.2.15


Was this documentation topic helpful?

Enter your email address, and someone from the documentation team will respond to you:

Please provide your comments here. Ask a question or make a suggestion.

You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters