Splunk Enterprise

How to transform a date table result in a line chart?

jip31
Motivator

hi

 

 

| table "Start connexion" "End connexion"

 

 

The result of my search display a table with a suite of 2 dates 

Instead a table, I need to display this results in a line chart

How to do please?

Tags (1)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

What are you expecting/trying to show with the line graph?

0 Karma

jip31
Motivator

sorry it's not a line chart but a bar chart that I need

In abscissa I would like to display the _time field and for every _time field I would like to display the start connexion date and the end connection date

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

The standard bar chart doesn't do this. You might be able to find an add-on in splunk base to satisfy your requirement.

0 Karma
Get Updates on the Splunk Community!

Splunk Observability for AI

Don’t miss out on an exciting Tech Talk on Splunk Observability for AI!Discover how Splunk’s agentic AI ...

Splunk Enterprise Security 8.x: The Essential Upgrade for Threat Detection, ...

Watch On Demand the Tech Talk on November 6 at 11AM PT, and empower your SOC to reach new heights! Duration: ...

Splunk Observability as Code: From Zero to Dashboard

For the details on what Self-Service Observability and Observability as Code is, we have some awesome content ...