Dashboards & Visualizations

Creating a stacked line chart / timechart

kenbaugher
Path Finder

We have data similar to below and are looking to created a stacked timechart, however setting the stackmode does not seem to have any impact on the chart


timestamp System Value
TIME1 SYS1 VALUE1.1
TIME1 SYS2 VALUE2.1
TIME1 SYS3 VALUE3.1
TIME1 SYS4 VALUE4.1
TIME2 SYS1 VALUE1.2
TIME2 SYS2 VALUE2.2
TIME2 SYS3 VALUE3.2
TIME2 SYS4 VALUE4.2

timechart latest(Value) by System

<option name="charting.chart.stackMode">stacked</option>

Labels (1)
0 Karma
1 Solution

ITWhisperer
SplunkTrust
SplunkTrust

You could consider area charts which sort of mixes line and column charts

View solution in original post

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

Stacked mode is not a valid option for line charts - try column charts

0 Karma

kenbaugher
Path Finder

On one hand thank you very much, changing this to a column makes the stacked work.   On the other hand the documentation I was reading did list the stackmode under line charts, so that is a bit confusing.

Chart configuration reference - Splunk Documentation

The teams would prefer the line graphs as that is more common for us, but this does get the desired visual.

Thank you

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

You could consider area charts which sort of mixes line and column charts

0 Karma
Get Updates on the Splunk Community!

Preparing your Splunk Environment for OpenSSL3

The Splunk platform will transition to OpenSSL version 3 in a future release. Actions are required to prepare ...

Unleash Unified Security and Observability with Splunk Cloud Platform

     Now Available on Microsoft AzureThursday, March 27, 2025  |  11AM PST / 2PM EST | Register NowStep boldly ...

Splunk AppDynamics with Cisco Secure Application

Web applications unfortunately present a target rich environment for security vulnerabilities and attacks. ...