Splunk® Enterprise

Splunk Dashboard Studio

Splunk Enterprise version 8.2 is no longer supported as of September 30, 2023. See the Splunk Software Support Policy for details. For information about upgrading to a supported version, see How to upgrade Splunk Enterprise.
This documentation does not apply to the most recent version of Splunk® Enterprise. For documentation on the most recent version, go to the latest release.

Add a visualization to your dashboard

You can use the editing bar to add objects to your dashboard and the Configuration panel in the visual editor to use most of the formatting options for visualizations.

If you are using the grid layout, charts are the only visualizations available.

  1. Select a chart or other visualization using the visual editor by clicking one of the visualization options in the editing toolbar. For example, to add a chart, click the Add Chart button ( The Add Chart button in the editing toolbar. ) and select a chart.
  2. Select the chart you want to format on your dashboard to highlight it with the blue editing outline.
  3. Set up a data source by adding a new search or selecting an existing data source.
    1. To initiate a new search, add a search to the Search with SPL window if you've selected a chart, or click + Setup Primary Data Source if you've selected a shape.
    2. To select an existing data source, close the Configuration panel and reopen it. In the Data Configurations section, click + Setup Primary Data Source and click + Create Ad hoc Search to create a new search from this window. You can also create a unique ID that describes the search better than the default.
  4. To customize your visualization, use the available options in the Configuration panel below the Data Configurations section.
  5. For further customization, click the Source Editor (The source editor icon) and find your chart in the visualizations stanza. Use dynamic options syntax (DOS) to add dynamic visualizations to your chart.

To learn more about data sources, see Use data sources.

Format your visualizations

Each visualization and each chart type have different visualization options. Most of these options can be formatted using the visual editor, and all of them have their own chapters or topics in this manual, with their specific formatting options. While most visualizations can be formatted using the visual editor, some configuration options are only available using the source editor. To learn more about the structure of visualizations in the source editor, see Visualizations in the source editor.

Last modified on 17 March, 2022
Download a dashboard   Use the action panel to layer, clone, and delete objects

This documentation applies to the following versions of Splunk® Enterprise: 8.2.1, 8.2.2, 8.2.3, 8.2.4, 8.2.5, 8.2.6, 8.2.7, 8.2.8, 8.2.9, 8.2.10, 8.2.11, 8.2.12


Was this topic useful?







You must be logged into splunk.com in order to post comments. Log in now.

Please try to keep this discussion focused on the content covered in this documentation topic. If you have a more general question about Splunk functionality or are experiencing a difficulty with Splunk, consider posting a question to Splunkbase Answers.

0 out of 1000 Characters