Monitoring Splunk

How do I compare last week's and the current week's data for page loaded time to see Splunk Web performance?

rck
New Member

How can I compare the t_done event in Splunk Web performance for last week's data and current data?

0 Karma

gyslainlatsa
Motivator

hi rck,

that is the example using timewrap:

 source="Perfmon:CPU Load" counter="% Processor Time" host="SERVER01" earliest=-1d@d latest=-0d@d 
 | timechart avg(Value) span=1h 
 | timewrap w 
 | where strftime(_time, "%A") == " day of the week"

For more informations, try following this link:

https://answers.splunk.com/answers/60295/comparing-time-ranges-one-report.html

0 Karma

Jeremiah
Motivator

Try using the Timewrap app. You can use it to compare two time ranges by adding it your search.

https://splunkbase.splunk.com/app/1645/

t_done=* earliest=-2w@w latest=@w | timechart avg(t_done) | timewrap w

Get Updates on the Splunk Community!

Splunk Enterprise Security(ES) 7.3 is approaching the end of support. Get ready for ...

Hi friends!    At Splunk, your product success is our top priority. With Enterprise Security (ES), we're here ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk, and empower your SOC to reach new heights! Duration: 1 hour  Prepare to ...

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...