So I have a search that queries hosts that are reporting their syslogs via the Meta Hoot! application for Splunk. As of now the search is only a Single Value, however, I would like to add a trend indicator using 'timechart' for the previous 24 hours.
Here is the search string.
inputlookup meta_woot where index=* sourcetype=syslog | stats dc(host) as "Hosts"
How can I incorporate 'timechart' to add the uptick/downtick, trend indicator?