Splunk Enterprise

How to transform a date table result in a line chart?

jip31
Motivator

hi

 

 

| table "Start connexion" "End connexion"

 

 

The result of my search display a table with a suite of 2 dates 

Instead a table, I need to display this results in a line chart

How to do please?

Tags (1)
0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

What are you expecting/trying to show with the line graph?

0 Karma

jip31
Motivator

sorry it's not a line chart but a bar chart that I need

In abscissa I would like to display the _time field and for every _time field I would like to display the start connexion date and the end connection date

0 Karma

ITWhisperer
SplunkTrust
SplunkTrust

The standard bar chart doesn't do this. You might be able to find an add-on in splunk base to satisfy your requirement.

0 Karma
Get Updates on the Splunk Community!

Splunk Mobile: Your Brand-New Home Screen

Meet Your New Mobile Hub  Hello Splunk Community!  Staying connected to your data—no matter where you are—is ...

Introducing Value Insights (Beta): Understand the Business Impact your organization ...

Real progress on your strategic priorities starts with knowing the business outcomes your teams are delivering ...

Enterprise Security (ES) Essentials 8.3 is Now GA — Smarter Detections, Faster ...

As of today, Enterprise Security (ES) Essentials 8.3 is now generally available, helping SOC teams simplify ...