<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Does tstats command work in Hunk? in Splunk Search</title>
    <link>https://community.splunk.com/t5/Splunk-Search/Does-tstats-command-work-in-Hunk/m-p/346255#M102576</link>
    <description>&lt;P&gt;Yes tstats is supported since Hunk 6.4.&lt;BR /&gt;
Here is the link to the docs that describes what has to be done: &lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/HadoopAnalytics/Datamodelacceleration"&gt;http://docs.splunk.com/Documentation/Splunk/latest/HadoopAnalytics/Datamodelacceleration&lt;/A&gt;&lt;/P&gt;</description>
    <pubDate>Wed, 14 Jun 2017 15:43:40 GMT</pubDate>
    <dc:creator>rdagan_splunk</dc:creator>
    <dc:date>2017-06-14T15:43:40Z</dc:date>
    <item>
      <title>Does tstats command work in Hunk?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Does-tstats-command-work-in-Hunk/m-p/346254#M102575</link>
      <description>&lt;P&gt;I checked the Hunk documentation and it does not list 'tstats' as a command that's not supported, but when I try and run the following search:&lt;/P&gt;

&lt;P&gt;&lt;CODE&gt;| tstats count WHERE index=fwlogs by _time span=15m&lt;/CODE&gt;&lt;/P&gt;

&lt;P&gt;I always get the message that states "No results found. Try expanding the time range", no matter what I set the time picker to (1 day, 7 days, etc).&lt;/P&gt;

&lt;P&gt;Does tstats work in Hunk?&lt;/P&gt;

&lt;P&gt;Thx&lt;/P&gt;</description>
      <pubDate>Wed, 14 Jun 2017 15:14:17 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Does-tstats-command-work-in-Hunk/m-p/346254#M102575</guid>
      <dc:creator>jwalzerpitt</dc:creator>
      <dc:date>2017-06-14T15:14:17Z</dc:date>
    </item>
    <item>
      <title>Re: Does tstats command work in Hunk?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Does-tstats-command-work-in-Hunk/m-p/346255#M102576</link>
      <description>&lt;P&gt;Yes tstats is supported since Hunk 6.4.&lt;BR /&gt;
Here is the link to the docs that describes what has to be done: &lt;A href="http://docs.splunk.com/Documentation/Splunk/latest/HadoopAnalytics/Datamodelacceleration"&gt;http://docs.splunk.com/Documentation/Splunk/latest/HadoopAnalytics/Datamodelacceleration&lt;/A&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 14 Jun 2017 15:43:40 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Does-tstats-command-work-in-Hunk/m-p/346255#M102576</guid>
      <dc:creator>rdagan_splunk</dc:creator>
      <dc:date>2017-06-14T15:43:40Z</dc:date>
    </item>
    <item>
      <title>Re: Does tstats command work in Hunk?</title>
      <link>https://community.splunk.com/t5/Splunk-Search/Does-tstats-command-work-in-Hunk/m-p/346256#M102577</link>
      <description>&lt;P&gt;Thx for the info&lt;/P&gt;</description>
      <pubDate>Wed, 14 Jun 2017 16:03:05 GMT</pubDate>
      <guid>https://community.splunk.com/t5/Splunk-Search/Does-tstats-command-work-in-Hunk/m-p/346256#M102577</guid>
      <dc:creator>jwalzerpitt</dc:creator>
      <dc:date>2017-06-14T16:03:05Z</dc:date>
    </item>
  </channel>
</rss>

