Splunk Search

Analysing combinations

tmtcollins
Explorer

Hi, I'd really appreciate some advice on this.

I have a data set looking at users and the apps they have access to. There are 3 apps in total.

I want to be able to product a pie chart or visualisation showing the combinations that users have access to.

Can anyone give any suggestions on the type of query I need to write?

Sample data attached

UserIDApp1App2App3
1010
2010
3010
4010
5000
6000
7000
8000
9111
10111
11111
12110
13110
14110
15000
16000

Many thanks, 

Tim

 

Labels (4)
0 Karma
Get Updates on the Splunk Community!

The OpenTelemetry Certified Associate (OTCA) Exam

What’s this OTCA exam? The Linux Foundation offers the OpenTelemetry Certified Associate (OTCA) credential to ...

From Manual to Agentic: Level Up Your SOC at Cisco Live

Welcome to the Era of the Agentic SOC   Are you tired of being a manual alert responder? The security ...

Splunk Classroom Chronicles: Training Tales and Testimonials (Episode 4)

Welcome back to Splunk Classroom Chronicles, our ongoing series where we shine a light on what really happens ...