Hi Everyone ,
I have two applications and I have created dashboards forteh apps:
index=epaas_epaas2_idx ns=blazegateway app_name=blazecrsgateway*
I need to get the below info:
Can someone guide me how we can get the above two information with index,ns and app name.
Hi @aditsss,
could you better describe your request:
Anyway, if I correctly supposed your fields and if they all are fields, you could run something like this:
index=epaas_epaas2_idx ns=blazegateway app_name=blazecrsgateway*
| stats
sum(YTD) AS "Total YTD Volume"
sum(Volume) AS GRS YTD
values(index) AS index
values(ns) AS ns
values(app_name) AS app_name
BY PSF_Push_APIAt least I hint to follow the Splunk Search Tutorial (https://docs.splunk.com/Documentation/Splunk/8.2.3/SearchTutorial/WelcometotheSearchTutorial) to be autonomous in your searches.
Ciao.
Giuseppe