# 3.2 Quick Values?

**URL:** <https://community.graylog.org/t/3-2-quick-values/13774>\
**Category:** Graylog Central (peer support)\
**Created:** [February 4, 2020, 2:56pm UTC](https://community.graylog.org/t/3-2-quick-values/13774 "2020-02-04T14:56:49Z")\
**Posts on this page:** 17\
**Page:** 1

<div class="post-metadata">

**Author:** ![jothoma1](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/jothoma1/32/1589_2.png) [@jothoma1](https://community.graylog.org/u/jothoma1)\
**Post date:** [February 4, 2020, 2:56pm UTC](https://community.graylog.org/t/3-2-quick-values/13774/1 "2020-02-04T14:56:50Z")

</div>

Hello,  
just updated to the 3.2 release but we are a bit lost…  
We are using a lot quick values and the ability to chose one field of the quick values in order to include it in the search

With this new release i dont see how to make the same thing  
help 🙂 ?

---

<div class="post-metadata">

**Author:** ![konrad](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/konrad/32/1661_2.png) [@konrad](https://community.graylog.org/u/konrad)\
**Post date:** [February 4, 2020, 3:46pm UTC](https://community.graylog.org/t/3-2-quick-values/13774/2 "2020-02-04T15:46:07Z")

</div>

Hi @jothoma1,

Thanks for your feedback! We did not implement a default widget like quick values in the 3.2 release.

You have to create a aggregation by hand for now.

I made some explanation here already:

> [@Rollback 3.2-\>3.1?](https://community.graylog.org/t/rollback-3-2-3-1/13745):
>
> Whether simple rollback from 3.2 to 3.1 (using package manager) is possible without data loss? In my case it’s mostly about usability, not about some technical issues. In 3.1 I could get required info in 2 clicks, now it requires much more efforts

Don’t get confused by the title, I made some explanations around the use of Quick Values shortly later in this thread.

If you have more questions, please let me know.

---

<div class="post-metadata">

**Author:** ![Karlis](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/karlis/32/4798_2.png) [@Karlis](https://community.graylog.org/u/Karlis)\
**Post date:** [February 5, 2020, 8:42am UTC](https://community.graylog.org/t/3-2-quick-values/13774/3 "2020-02-05T08:42:42Z")

</div>

> [@konrad](#):
>
> We did not implement a default widget like quick values in the 3.2 release

That was not the best decision, IMHO. This not the only reason but the major one why we will skip version 3.2.

---

<div class="post-metadata">

**Author:** ![konrad](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/konrad/32/1661_2.png) [@konrad](https://community.graylog.org/u/konrad)\
**Post date:** [February 5, 2020, 9:02am UTC](https://community.graylog.org/t/3-2-quick-values/13774/4 "2020-02-05T09:02:16Z")

</div>

@Karlis I am sorry to hear that, we plan to have default widgets in the future. It would be helpful what other reason are made you to decide to skip the 3.2 release, so we can take this in account for further planning?

Thanks a lot for your feedback!

---

<div class="post-metadata">

**Author:** ![Karlis](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/karlis/32/4798_2.png) [@Karlis](https://community.graylog.org/u/Karlis)\
**Post date:** [February 5, 2020, 12:36pm UTC](https://community.graylog.org/t/3-2-quick-values/13774/5 "2020-02-05T12:36:37Z")

</div>

Main reason as said - no quick values.

Veeeeery slooow comparing to v.3.1.

No possibility to go from dashboard widget to associated search.

Search hints are less helpful, i.e. typing ‘source’ in previous versions gave me field name ‘source:’ (with colon at end) in drop-down menu. I was able to navigate to it using keyboard, hit Enter and immediately type field value. Now the same procedure gives me field name without colon at end, so I should type it first and then field value. Perhaps not big deal, but it was easier before.

No field decorators, we are using Syslog severity mapper for more human readable searches.

Loading saved searches was 2 clicks, now it takes 3 or more clicks.

Load saved searches dialog not remembers how many rows should be displayed, no matter how rows per page I set, nex time there are 5 rows.

At least one positive thing, I like ability to search in dedicated stream easy way.

One note about upgrade procedure - why `gl2_accounted_message_size` creation was left to post upgrade task, not executed automatically, especially if this can be done in one line.

---

<div class="post-metadata">

**Author:** ![konrad](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/konrad/32/1661_2.png) [@konrad](https://community.graylog.org/u/konrad)\
**Post date:** [February 6, 2020, 8:53am UTC](https://community.graylog.org/t/3-2-quick-values/13774/6 "2020-02-06T08:53:14Z")

</div>

Hi @Karlis,

thanks for your very valuable feedback!

I want to address some of the issues you described:

> No possibility to go from dashboard widget to associated search.

I would say there is no connection anymore between search and dashboard. Since you can create your widget inside the dashboard. In my opinion this gives the dashboards the possibility of a drill down tool.

The search hints will be addressed. I can’t say for sure but I think will be part of the bug fix release.

> No field decorators, we are using Syslog severity mapper for more human readable searches.

There they are:

 ![Graylog (54)](https://us1.discourse-cdn.com/flex016/uploads/graylog/original/2X/3/32dc4ba2b52555007ffaea70c8eccdb5e3cf2b74.png)

> Loading saved searches was 2 clicks, now it takes 3 or more clicks.

Yes it is now 3+ clicks away, but you save much more then only the query. You also save the widgets connected to the query. But I will take that input and have already some ideas to make this better.

> Load saved searches dialog not remembers how many rows should be displayed, no matter how rows per page I set, next time there are 5 rows.

We do not save such settings yet. But I guess it is wrong to only display 5 as a default in the first place.

---

<div class="post-metadata">

**Author:** ![Karlis](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/karlis/32/4798_2.png) [@Karlis](https://community.graylog.org/u/Karlis)\
**Post date:** [February 6, 2020, 9:48am UTC](https://community.graylog.org/t/3-2-quick-values/13774/7 "2020-02-06T09:48:12Z")

</div>

> [@konrad](#):
>
> > No field decorators, we are using Syslog severity mapper for more human readable searches.
> 
> There they are:

So they are not migrated, OK, got them back.

---

<div class="post-metadata">

**Author:** ![Karlis](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/karlis/32/4798_2.png) [@Karlis](https://community.graylog.org/u/Karlis)\
**Post date:** [February 6, 2020, 9:53am UTC](https://community.graylog.org/t/3-2-quick-values/13774/8 "2020-02-06T09:53:47Z")

</div>

> [@konrad](#):
>
> > Loading saved searches was 2 clicks, now it takes 3 or more clicks.
> 
> Yes it is now 3+ clicks away, but you save much more then only the query. You also save the widgets connected to the query.

It sounds like - you have to open 3 doors more now to get in, but you got a better view from your windows now 😃

---

<div class="post-metadata">

**Author:** ![Karlis](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/karlis/32/4798_2.png) [@Karlis](https://community.graylog.org/u/Karlis)\
**Post date:** [February 6, 2020, 9:56am UTC](https://community.graylog.org/t/3-2-quick-values/13774/9 "2020-02-06T09:56:59Z")

</div>

> [@konrad](#):
>
> > No possibility to go from dashboard widget to associated search.
> 
> I would say there is no connection anymore between search and dashboard. Since you can create your widget inside the dashboard. In my opinion this gives the dashboards the possibility of a drill down tool.

Perhaps we need to review our workflow. For me the former was more intuitive and faster to achieve results. Now we need more to prepare before and less improvisation. At least it seems so at first glance.

---

<div class="post-metadata">

**Author:** ![konrad](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/konrad/32/1661_2.png) [@konrad](https://community.graylog.org/u/konrad)\
**Post date:** [February 6, 2020, 10:07am UTC](https://community.graylog.org/t/3-2-quick-values/13774/10 "2020-02-06T10:07:51Z")

</div>

I guess you are right. The new dashboard needs more preparation but hopefully you will get more results at the same time. Since we are missing default widgets the speed at start is slower. But I like some features like `Documents for values` or:

![Graylog (55)](https://us1.discourse-cdn.com/flex016/uploads/graylog/original/2X/9/92301e7db3e859f64c4b2819381b9fcfce78330c.png)

Which will highlight a selected value in all message tables and data tables.

Also since you can now have different queries and timeranges per widget in the Dashboard you can have much broader scope in one dashboard.

---

<div class="post-metadata">

**Author:** ![antoine](https://avatars.discourse-cdn.com/v4/letter/a/7ab992/32.png) [@antoine](https://community.graylog.org/u/antoine)\
**Post date:** [February 7, 2020, 9:38am UTC](https://community.graylog.org/t/3-2-quick-values/13774/11 "2020-02-07T09:38:25Z")

</div>

Hi @konrad,

Just to let you know we were also using a lot the amazing Quick Values function, and we will revert to previous Graylog version to have it back …  
(We did read your exchange with @zoulja but the work around doesn’t fulfill our Quick Values loss)  
We hope to find back Quick Values in a next release !

That being said, we are very happy to use GrayLog and we really thank you for the work you are doing.

King regards,

---

<div class="post-metadata">

**Author:** ![konrad](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/konrad/32/1661_2.png) [@konrad](https://community.graylog.org/u/konrad)\
**Post date:** [February 7, 2020, 10:03am UTC](https://community.graylog.org/t/3-2-quick-values/13774/12 "2020-02-07T10:03:19Z")

</div>

Thanks for the feedback @antoine. Every feedback is important!

---

<div class="post-metadata">

**Author:** ![konrad](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/konrad/32/1661_2.png) [@konrad](https://community.graylog.org/u/konrad)\
**Post date:** [February 11, 2020, 12:44pm UTC](https://community.graylog.org/t/3-2-quick-values/13774/13 "2020-02-11T12:44:46Z")

</div>

Soooooooo. I am sorry.  
As it seems I lost a bit track of our features. And not just me, but some other peoples as well.

We have something like Quick Values. It is the field action `Aggregate`:

 ![quick-value](https://us1.discourse-cdn.com/flex016/uploads/graylog/original/2X/0/021c02f65538f3cd85245add27a9bc59aafc568e.gif)

---

<div class="post-metadata">

**Author:** ![Karlis](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/karlis/32/4798_2.png) [@Karlis](https://community.graylog.org/u/Karlis)\
**Post date:** [February 11, 2020, 1:57pm UTC](https://community.graylog.org/t/3-2-quick-values/13774/14 "2020-02-11T13:57:30Z")

</div>

> [@konrad](#):
>
> We have something like Quick Values. It is the field action `Aggregate` :

How many clicks You made to display this? 🤣

---

<div class="post-metadata">

**Author:** ![konrad](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/konrad/32/1661_2.png) [@konrad](https://community.graylog.org/u/konrad)\
**Post date:** [February 11, 2020, 2:30pm UTC](https://community.graylog.org/t/3-2-quick-values/13774/15 "2020-02-11T14:30:32Z")

</div>

Depends on how on what you want to have. If you want the 5 top values. Then one click. If you want some fancy pie graph. Then a couple of clicks more 🙂

---

<div class="post-metadata">

**Author:** ![Karlis](https://sea2.discourse-cdn.com/flex016/user_avatar/community.graylog.org/karlis/32/4798_2.png) [@Karlis](https://community.graylog.org/u/Karlis)\
**Post date:** [February 12, 2020, 9:06am UTC](https://community.graylog.org/t/3-2-quick-values/13774/16 "2020-02-12T09:06:44Z")

</div>

OK, got it.  
Offtopic: Found one more cool feature in 3.2, scratchpad.

---

<div class="post-metadata">

**Author:** ![system](https://us1.discourse-cdn.com/flex016/uploads/graylog/original/3X/c/7/c7c09c6b5099570133d6502b83f50ba4430de5b6.png) [@system](https://community.graylog.org/u/system)\
**Post date:** [February 26, 2020, 9:06am UTC](https://community.graylog.org/t/3-2-quick-values/13774/17 "2020-02-26T09:06:46Z")

</div>

This topic was automatically closed 14 days after the last reply. New replies are no longer allowed.
