Splunk Enterprise

how to combine count of 2 pages?

tonicassis
New Member

My search results have a count for "/" page (default home page) and "index.asp" separately. How can I combine these in the query?

thanks

Tags (1)
0 Karma
1 Solution

martin_mueller
SplunkTrust
SplunkTrust

You could dynamically override certain page values like this:

base search | eval page = if(match(page, "(?i)^(/|index.asp)$"), "Homepage", page) | ...

View solution in original post

martin_mueller
SplunkTrust
SplunkTrust

You could dynamically override certain page values like this:

base search | eval page = if(match(page, "(?i)^(/|index.asp)$"), "Homepage", page) | ...
Get Updates on the Splunk Community!

Optimize Cloud Monitoring

  TECH TALKS Optimize Cloud Monitoring Tuesday, August 13, 2024  |  11:00AM–12:00PM PST   Register to ...

What's New in Splunk Cloud Platform 9.2.2403?

Hi Splunky people! We are excited to share the newest updates in Splunk Cloud Platform 9.2.2403! Analysts can ...

Stay Connected: Your Guide to July and August Tech Talks, Office Hours, and Webinars!

Dive into our sizzling summer lineup for July and August Community Office Hours and Tech Talks. Scroll down to ...