Dashboards & Visualizations

Table in Splunk

Roopashree
Observer

Hi,

I wanted to create a table as below. I am extracting Status and Reason using rex. How can I create this. Count column should count the events- I used stats count by ..

Roopashree_0-1711641222255.png

 

Labels (1)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @Roopashree,

Splunk isn't Excel, so you cannot merge two cels, you could have the NOT_OK value in both the rows:

<your_search>
| rex 1
| rex 2
| stats count BY Status Reasons

please next time add also the sample in text mode.

Ciao.

Giuseppe

Get Updates on the Splunk Community!

Application management with Targeted Application Install for Victoria Experience

  Experience a new era of flexibility in managing your Splunk Cloud Platform apps! With Targeted Application ...

Index This | What goes up and never comes down?

January 2026 Edition  Hayyy Splunk Education Enthusiasts and the Eternally Curious!   We’re back with this ...

Splunkers, Pack Your Bags: Why Cisco Live EMEA is Your Next Big Destination

The Power of Two: Splunk &#43; Cisco at "Ludicrous Scale"   You know Splunk. You know Cisco. But have you seen ...