Splunk Search

Can you help me with the following search in Splunk?

vumanhtai
Path Finder

Hi Team Splunk!
alt text

How can i do this?

Thanks!

0 Karma

nagarjuna280
Communicator

| table src_ip dest_ip megabyte | addcoltotals megabyte labelfield=total(megabytes) label="src_ip"

0 Karma

vumanhtai
Path Finder

thank you!
but result is not i want

0 Karma

dflodstrom
Builder

You can use 'addcoltotals' to display a total for your megabyte column. Add this to the end of your search | addcoltotals labelfield=dest_ip label= "total(megabyte)" megabyte It won't display like you're showing with a merged cell though.

0 Karma

vumanhtai
Path Finder

thank you!
but result is not i want

0 Karma
Get Updates on the Splunk Community!

Harnessing Splunk’s Federated Search for Amazon S3

Managing your data effectively often means balancing performance, costs, and compliance. Splunk’s Federated ...

Infographic provides the TL;DR for the 2024 Splunk Career Impact Report

We’ve been buzzing with excitement about the recent validation of Splunk Education! The 2024 Splunk Career ...

Enterprise Security Content Update (ESCU) | New Releases

In December, the Splunk Threat Research Team had 1 release of new security content via the Enterprise Security ...