Splunk Search

Can you help me with the following search in Splunk?

vumanhtai
Path Finder

Hi Team Splunk!
alt text

How can i do this?

Thanks!

0 Karma

nagarjuna280
Communicator

| table src_ip dest_ip megabyte | addcoltotals megabyte labelfield=total(megabytes) label="src_ip"

0 Karma

vumanhtai
Path Finder

thank you!
but result is not i want

0 Karma

dflodstrom
Builder

You can use 'addcoltotals' to display a total for your megabyte column. Add this to the end of your search | addcoltotals labelfield=dest_ip label= "total(megabyte)" megabyte It won't display like you're showing with a merged cell though.

0 Karma

vumanhtai
Path Finder

thank you!
but result is not i want

0 Karma
Get Updates on the Splunk Community!

Earn a $35 Gift Card for Answering our Splunk Admins & App Developer Survey

Survey for Splunk Admins and App Developers is open now! | Earn a $35 gift card!      Hello there,  Splunk ...

Continuing Innovation & New Integrations Unlock Full Stack Observability For Your ...

You’ve probably heard the latest about AppDynamics joining the Splunk Observability portfolio, deepening our ...

Monitoring Amazon Elastic Kubernetes Service (EKS)

As we’ve seen, integrating Kubernetes environments with Splunk Observability Cloud is a quick and easy way to ...