Splunk Enterprise

How to select different values to produce a graph?

khairilfirza
Explorer

Hi
I have a question

source="vpn.log.2018-04-12" Line=212

This line is only producing a graph for 212, what if I want to combine with graph 211?

How will I do that?

Tags (2)
1 Solution

renjith_nair
Legend

Hi @khairilfirza ,

You shall combine that with OR for e.g.

source="vpn.log.2018-04-12" (Line=212 OR Line=211)
---
What goes around comes around. If it helps, hit it with Karma 🙂

View solution in original post

renjith_nair
Legend

Hi @khairilfirza ,

You shall combine that with OR for e.g.

source="vpn.log.2018-04-12" (Line=212 OR Line=211)
---
What goes around comes around. If it helps, hit it with Karma 🙂
Get Updates on the Splunk Community!

Upcoming Webinar: Unmasking Insider Threats with Slunk Enterprise Security’s UEBA

Join us on Wed, Dec 10. at 10AM PST / 1PM EST for a live webinar and demo with Splunk experts! Discover how ...

.conf25 technical session recap of Observability for Gen AI: Monitoring LLM ...

If you’re unfamiliar, .conf is Splunk’s premier event where the Splunk community, customers, partners, and ...

A Season of Skills: New Splunk Courses to Light Up Your Learning Journey

There’s something special about this time of year—maybe it’s the glow of the holidays, maybe it’s the ...