<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Max from statistical chart in Dashboards &amp; Visualizations</title>
    <link>https://community.splunk.com/t5/Dashboards-Visualizations/Max-from-statistical-chart/m-p/290958#M43208</link>
    <description>&lt;P&gt;Try like this (Use some very high number for &lt;CODE&gt;| eval MinUnused=1000000&lt;/CODE&gt; if current value is not sufficient)&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;your search | chart max(PEAK) as Used max(Available) as "Qty" max(MaxUnused) as "Unused" over NAME by Month
| eval MaxQty=0 | eval MaxUsed=0 | eval MinUnused=1000000
| foreach Qty* [eval MaxQty=max('&amp;lt;&amp;lt;FIELD&amp;gt;&amp;gt;',MaxQty)]
| foreach Used* [eval MaxUsed=max('&amp;lt;&amp;lt;FIELD&amp;gt;&amp;gt;',MaxUsed)]
| foreach Unused* [eval MinUnused=min('&amp;lt;&amp;lt;FIELD&amp;gt;&amp;gt;',MinUnused)]
&lt;/CODE&gt;&lt;/PRE&gt;</description>
    <pubDate>Wed, 08 Feb 2017 16:55:52 GMT</pubDate>
    <dc:creator>somesoni2</dc:creator>
    <dc:date>2017-02-08T16:55:52Z</dc:date>
    <item>
      <title>Max from statistical chart</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Max-from-statistical-chart/m-p/290957#M43207</link>
      <description>&lt;P&gt;I have created a chart with the below query&lt;/P&gt;

&lt;P&gt;| chart  max(PEAK) as Used max(Available) as "Qty" max(MaxUnused) as "Unused" over NAME by Month &lt;/P&gt;

&lt;P&gt;And my result is as below&lt;/P&gt;

&lt;P&gt;NAME     Qty::Apr Qty::May Qty::Jun Unused::Apr Unused::May Unused::Jun Used::Apr Used::May Used::Jun&lt;BR /&gt;
Test          10            10             20            1                       2                       3                  9                    8               12&lt;/P&gt;

&lt;P&gt;I need additional 3 columns based on the above result to show Max Qty (Apr,May,Jun) and Max Used (Apr,May,Jun) and Min Unused  (Apr,May,Jun) &lt;/P&gt;

&lt;P&gt;Thanks.      &lt;/P&gt;</description>
      <pubDate>Wed, 08 Feb 2017 14:07:30 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Max-from-statistical-chart/m-p/290957#M43207</guid>
      <dc:creator>vivekkumark</dc:creator>
      <dc:date>2017-02-08T14:07:30Z</dc:date>
    </item>
    <item>
      <title>Re: Max from statistical chart</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Max-from-statistical-chart/m-p/290958#M43208</link>
      <description>&lt;P&gt;Try like this (Use some very high number for &lt;CODE&gt;| eval MinUnused=1000000&lt;/CODE&gt; if current value is not sufficient)&lt;/P&gt;

&lt;PRE&gt;&lt;CODE&gt;your search | chart max(PEAK) as Used max(Available) as "Qty" max(MaxUnused) as "Unused" over NAME by Month
| eval MaxQty=0 | eval MaxUsed=0 | eval MinUnused=1000000
| foreach Qty* [eval MaxQty=max('&amp;lt;&amp;lt;FIELD&amp;gt;&amp;gt;',MaxQty)]
| foreach Used* [eval MaxUsed=max('&amp;lt;&amp;lt;FIELD&amp;gt;&amp;gt;',MaxUsed)]
| foreach Unused* [eval MinUnused=min('&amp;lt;&amp;lt;FIELD&amp;gt;&amp;gt;',MinUnused)]
&lt;/CODE&gt;&lt;/PRE&gt;</description>
      <pubDate>Wed, 08 Feb 2017 16:55:52 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Max-from-statistical-chart/m-p/290958#M43208</guid>
      <dc:creator>somesoni2</dc:creator>
      <dc:date>2017-02-08T16:55:52Z</dc:date>
    </item>
    <item>
      <title>Re: Max from statistical chart</title>
      <link>https://community.splunk.com/t5/Dashboards-Visualizations/Max-from-statistical-chart/m-p/290959#M43209</link>
      <description>&lt;P&gt;Awesome!!&lt;/P&gt;

&lt;P&gt;Later found that we can also used if condition&lt;/P&gt;</description>
      <pubDate>Wed, 08 Feb 2017 17:25:02 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Dashboards-Visualizations/Max-from-statistical-chart/m-p/290959#M43209</guid>
      <dc:creator>vivekkumark</dc:creator>
      <dc:date>2017-02-08T17:25:02Z</dc:date>
    </item>
  </channel>
</rss>

