Monitoring Splunk

How do I compare last week's and the current week's data for page loaded time to see Splunk Web performance?

rck
New Member

How can I compare the t_done event in Splunk Web performance for last week's data and current data?

0 Karma

gyslainlatsa
Motivator

hi rck,

that is the example using timewrap:

 source="Perfmon:CPU Load" counter="% Processor Time" host="SERVER01" earliest=-1d@d latest=-0d@d 
 | timechart avg(Value) span=1h 
 | timewrap w 
 | where strftime(_time, "%A") == " day of the week"

For more informations, try following this link:

https://answers.splunk.com/answers/60295/comparing-time-ranges-one-report.html

0 Karma

Jeremiah
Motivator

Try using the Timewrap app. You can use it to compare two time ranges by adding it your search.

https://splunkbase.splunk.com/app/1645/

t_done=* earliest=-2w@w latest=@w | timechart avg(t_done) | timewrap w

Get Updates on the Splunk Community!

Wrapping Up Cybersecurity Awareness Month

October might be wrapping up, but for Splunk Education, cybersecurity awareness never goes out of season. ...

🌟 From Audit Chaos to Clarity: Welcoming Audit Trail v2

🗣 You Spoke, We Listened  Audit Trail v2 wasn’t written in isolation—it was shaped by your voices.  In ...

What's New in Splunk Observability - October 2025

What’s New?    We’re excited to announce the latest enhancements to Splunk Observability Cloud and share ...