Hi all,
Previously I made a column based on today, yesterday and the day before that. I recently made a Static table chart with the different healthcheck errors from our machines. Currently, it only shows "snapshot" I suppose, but if it's possible, I'd like the do the same thing as I have in the column chart.
Currently, this is the search and result:
If possible, I'd like to change "Amount" to "Today" and left of that column add "Yesterday" and left of that "Daybeforethat"
I'm trying to use the same method as my Column chart history, but it's not working out.. Can someone help my out with this search?
Here is my example:
Thanks!
You need the timewrap
command:
https://docs.splunk.com/Documentation/Splunk/latest/SearchReference/Timewrap