Dashboards & Visualizations

Average of Time Bucket Over Time

davidlapello
Engager

I want to create a dashboard that shows 2 things.  First, it will search over the last 60 minutes for total errors. 

sourcetype=blabla  error

And, it will look for average errors for the same time period over the past month.  For example, if the search is ran at 14:29, it will show the average errors for 13:30-14:29 for each day over the last month, preferably just weekdays.  

So, it will show a stats table with two results.  Total errors for the last 60 minutes, and average errors over that time period for the last month.

 

Thanks

Labels (1)
0 Karma
Get Updates on the Splunk Community!

Splunk Training for All: Meet Aspiring Cybersecurity Analyst, Marc Alicea

Splunk Education believes in the value of training and certification in today’s rapidly-changing data-driven ...

Investigate Security and Threat Detection with VirusTotal and Splunk Integration

As security threats and their complexities surge, security analysts deal with increased challenges and ...

Observability Highlights | January 2023 Newsletter

 January 2023New Product Releases Splunk Network Explorer for Infrastructure MonitoringSplunk unveils Network ...