Dashboards & Visualizations

Timechart trend - for the last 7 days

smthakur73
New Member

Each day of the trend chart should show me the total for the last 7 days. For eg:

Apr 7 - sum(Apr 1 - Apr 7)
Apr 8 - sum(Apr 2 - Apr 😎
Apr 9 - sum(Apr 3 - Apr 9)

etc...

This presents a daily improvement for the last 7 days of data set.

Tags (1)
0 Karma

skoelpin
SplunkTrust
SplunkTrust

Use timewrap.. You gotta pipe in a timechart to do it like this

index=.. 
| timechart  span=1h sum(field_name) 
| timewrap 1d
0 Karma

Sukisen1981
Champion
0 Karma
Career Survey
First 500 qualified respondents will receive a $20 gift card! Tell us about your professional Splunk journey.
Get Updates on the Splunk Community!

Tech Talk Recap | Mastering Threat Hunting

Mastering Threat HuntingDive into the world of threat hunting, exploring the key differences between ...

Observability for AI Applications: Troubleshooting Latency

If you’re working with proprietary company data, you’re probably going to have a locally hosted LLM or many ...

Splunk AI Assistant for SPL vs. ChatGPT: Which One is Better?

In the age of AI, every tool promises to make our lives easier. From summarizing content to writing code, ...