Splunk Search

Bar chart

sahana
Engager

I have another requirement like, I want to show an bar chart which should show the total login count in basis of the time period we submit

 

for example if we select 2 days it should show the bar chart where y is for login count and x is for time slection (in basis of day interval like 6thfeb  7th feb like this)

Labels (1)
0 Karma

gcusello
SplunkTrust
SplunkTrust

Hi @sahana,

your question is reaally vague!

The search depends on the data you're speking.

e.g., if you're speaking of Windows logins (EventCode=4624) you could use the timechart command, something like this:

index=wineventlog EventCode=4624
| timechart count

Ciao.

Giuseppe

0 Karma
Get Updates on the Splunk Community!

New Year. New Skills. New Course Releases from Splunk Education

A new year often inspires reflection—and reinvention. Whether your goals include strengthening your security ...

Splunk and TLS: It doesn't have to be too hard

Overview Creating a TLS cert for Splunk usage is pretty much standard openssl.  To make life better, use an ...

Faster Insights with AI, Streamlined Cloud-Native Operations, and More New Lantern ...

Splunk Lantern is a Splunk customer success center that provides practical guidance from Splunk experts on key ...